StackRadar

CVE-2020-7789

Medium

Advisory

Published 21 Dec 2020In the index since 8 Sept 2026
Severity
Medium
worst across findings
CVSS
5.6
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
9
of 17,781 indexed, latest versions
Container images
9
deployed by those charts
Fix available
1 of 1
affected package

OS Command Injection in node-notifier

Carried by container images the latest versions of 9 of 17,781 indexed charts deploy, on 9 images.

Affected packageAffected versionsFixed inImages
node-notifiernpm4.6.1, 5.4.3, 5.4.5, 7.0.1+1 more8.0.19
OSV records
GHSA-5fw9-fq32-wv5p

Charts affected

9 by stars
ChartLatestAffected imagesRadar Score
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
node-notifier@5.4.3
8.0.1

Open the chart page →

25,456
amundsenduyet1.1.01 of 7See more

amundsen duyet 1.1.0

1 of the 7 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
amundsendev/amundsen-frontend:2.1.169e7915e61c1
node-notifier@5.4.3
8.0.1

Open the chart page →

11,174
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
node-notifier@5.4.5
8.0.1

Open the chart page →

5,287
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
node-notifier@8.0.0
8.0.1

Open the chart page →

6,438
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
node-notifier@7.0.1
8.0.1

Open the chart page →

6,684
smilencsaVerified publisher1.1.01 of 23See more

smile ncsa 1.1.0

1 of the 23 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
node-notifier@4.6.1
8.0.1

Open the chart page →

109,294
hive-selfservice-ui-nodeory0.1.01 of 1See more

hive-selfservice-ui-node ory 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
oryd/hive-selfservice-ui-node:v0.0.426347ef0a2de
node-notifier@5.4.3
8.0.1

Open the chart page →

1,986
speedtest-trackersoblivionscall3.0.41 of 1See more

speedtest-tracker soblivionscall 3.0.4

1 of the 1 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
henrywhitaker3/speedtest-tracker:latest47159a940229
node-notifier@5.4.3
8.0.1

Open the chart page →

2,460
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2020-7789.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
node-notifier@5.4.5
8.0.1

Open the chart page →

3,881

Container images carrying it

9 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
amundsendev/amundsen-frontend:2.1.169e7915e61c1
node-notifier@5.4.3
8.0.1
1
henrywhitaker3/speedtest-tracker:latest47159a940229
node-notifier@5.4.3
8.0.1
1
mozilla/sentencecollector:2.0.91da6ff5c4895
node-notifier@7.0.1
8.0.1
1
oryd/hive-selfservice-ui-node:v0.0.426347ef0a2de
node-notifier@5.4.3
8.0.1
1
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
node-notifier@5.4.5
8.0.1
1
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
node-notifier@4.6.1
8.0.1
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
node-notifier@5.4.5
8.0.1
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
node-notifier@5.4.3
8.0.1
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
node-notifier@8.0.0
8.0.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.