StackRadar

CVE-2020-8130

Medium

Advisory

Published 24 Feb 2020In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.4
base score, highest
EPSS
0.014
70th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
15
of 17,781 indexed, latest versions
Container images
14
deployed by those charts
Fix available
2 of 2
affected packages

OS Command Injection in Rake

Carried by container images the latest versions of 15 of 17,781 indexed charts deploy, on 14 images.

Affected packageAffected versionsFixed inImages
rakegem10.5.0, 12.3.0, 12.3.1, 12.3.212.3.314
rakedeb10.5.0-210.5.0-2ubuntu0.12
OSV records
GHSA-jppv-gw3r-w3q8UBUNTU-CVE-2020-8130
Also known as
USN-4295-1

Charts affected

15 by stars
ChartLatestAffected imagesRadar Score
fadicetic0.3.11 of 25See more

fadi cetic 0.3.1

1 of the 25 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
ceticasbl/pg-ldap-sync:latest6c0aa7567145
rake@12.3.1
12.3.3

Open the chart page →

52,919
istio-bookinfobookinfo1.2.21 of 6See more

istio-bookinfo bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
istio/examples-bookinfo-details-v1:1.15.0fce0bcbff0be
rake@12.3.2
12.3.3

Open the chart page →

18,980
honeywell-exporterbryanalves0.1.11 of 1See more

honeywell-exporter bryanalves 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
bryanalves/honeywell_exporter:0.0.1195f73dce8b21
rake@12.3.0
12.3.3

Open the chart page →

5,437
smart-exporterbryanalves0.2.21 of 1See more

smart-exporter bryanalves 0.2.2

1 of the 1 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
bryanalves/smart_exporter:0.2af47dfbb9413
rake@12.3.0
12.3.3

Open the chart page →

4,131
fluentd-cloudwatchcloudnativeapp0.9.01 of 2See more

fluentd-cloudwatch cloudnativeapp 0.9.0

1 of the 2 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.3.3-debian-cloudwatch-1.017398121d3cc
rake@10.5.0
12.3.3

Open the chart page →

1,342
puppet-forgecloudnativeapp0.1.81 of 2See more

puppet-forge cloudnativeapp 0.1.8

1 of the 2 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
hickey/puppet_forge:1.10.0c1148a09ef20
rake@10.5.0
12.3.3

Open the chart page →

4,086
fluentd-kubernetes-awscloudposse0.2.11 of 2See more

fluentd-kubernetes-aws cloudposse 0.2.1

1 of the 2 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.4.2-debian-elasticsearch-1.1ce4885865850
rake@12.3.2
12.3.3

Open the chart page →

1,305
istio-bookinfoistio-bookinfo1.2.21 of 6See more

istio-bookinfo istio-bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
istio/examples-bookinfo-details-v1:1.15.0fce0bcbff0be
rake@12.3.2
12.3.3

Open the chart page →

18,980
sample-bookinfokubesphere-testVerified publisher1.0.01 of 4See more

sample-bookinfo kubesphere-test 1.0.0

1 of the 4 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
kubesphere/examples-bookinfo-details-v1:1.13.0108d022f64f0
rake@12.3.2
12.3.3

Open the chart page →

9,378
comacopencord1.0.01 of 9See more

comac opencord 1.0.0

1 of the 9 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
omecproject/onos-progran:1.0.05715e5648aa0
rake@10.5.0-2
rake@10.5.0
10.5.0-2ubuntu0.1
12.3.3

Open the chart page →

88,546
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
rake@10.5.0-2
rake@10.5.0
10.5.0-2ubuntu0.1
12.3.3

Open the chart page →

38,865
pact-brokerqamatic0.1.01 of 2See more

pact-broker qamatic 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.32.0-2062d6c710099
rake@12.3.2
12.3.3

Open the chart page →

3,533
cf-operatorquarks2.3.0+0.g27a91cdf2 of 2See more

cf-operator quarks 2.3.0+0.g27a91cdf

2 of the 2 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
rake@12.3.0
12.3.3
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
rake@12.3.0
12.3.3

Open the chart page →

11,942
bookinforgnu1.0.01 of 7See more

bookinfo rgnu 1.0.0

1 of the 7 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
istio/examples-bookinfo-details-v1:1.14.04c3379923c8a
rake@12.3.2
12.3.3

Open the chart page →

20,462
istio-bookinforgnu1.0.21 of 7See more

istio-bookinfo rgnu 1.0.2

1 of the 7 container images this version deploys carry CVE-2020-8130.

Container imageDigestPackageFixed in
istio/examples-bookinfo-details-v1:1.14.04c3379923c8a
rake@12.3.2
12.3.3

Open the chart page →

20,462

Container images carrying it

14 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
istio/examples-bookinfo-details-v1:1.14.04c3379923c8a
rake@12.3.2
12.3.3
2
istio/examples-bookinfo-details-v1:1.15.0fce0bcbff0be
rake@12.3.2
12.3.3
2
bryanalves/honeywell_exporter:0.0.1195f73dce8b21
rake@12.3.0
12.3.3
1
bryanalves/smart_exporter:0.2af47dfbb9413
rake@12.3.0
12.3.3
1
ceticasbl/pg-ldap-sync:latest6c0aa7567145
rake@12.3.1
12.3.3
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
rake@12.3.0
12.3.3
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
rake@12.3.0
12.3.3
1
fluent/fluentd-kubernetes-daemonset:v1.3.3-debian-cloudwatch-1.017398121d3cc
rake@10.5.0
12.3.3
1
fluent/fluentd-kubernetes-daemonset:v1.4.2-debian-elasticsearch-1.1ce4885865850
rake@12.3.2
12.3.3
1
hickey/puppet_forge:1.10.0c1148a09ef20
rake@10.5.0
12.3.3
1
kubesphere/examples-bookinfo-details-v1:1.13.0108d022f64f0
rake@12.3.2
12.3.3
1
muluder/prograncontrollermcord:0.1.843b597a93da7
rake@10.5.0-2
rake@10.5.0
10.5.0-2ubuntu0.1
12.3.3
1
omecproject/onos-progran:1.0.05715e5648aa0
rake@10.5.0-2
rake@10.5.0
10.5.0-2ubuntu0.1
12.3.3
1
pactfoundation/pact-broker:2.32.0-2062d6c710099
rake@12.3.2
12.3.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.