StackRadar

CVE-2020-8287

Medium

Advisory

Published 6 Jan 2021In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.163
97th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
9
of 17,781 indexed, latest versions
Container images
9
deployed by those charts
Fix available
3 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 9 of 17,781 indexed charts deploy, on 9 images.

Affected packageAffected versionsFixed inImages
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 8.10.0~dfsg-2ubuntu0.4, 9.11.1-1nodesource1, 10.19.0~dfsg-3ubuntu14.2.6~dfsg-1ubuntu4.2+esm2, 8.10.0~dfsg-2ubuntu0.4+esm2, 10.19.0~dfsg-3ubuntu1.16
http-parserdeb2.7.1-2, 2.9.4-42.7.1-2ubuntu0.12
nodejsapk12.17.0-r0, 12.18.4-r012.20.1-r02
OSV records
ALPINE-CVE-2020-8287UBUNTU-CVE-2020-8287
Also known as
USN-5563-1, USN-6380-1

Charts affected

9 by stars
ChartLatestAffected imagesRadar Score
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
nodejs@12.17.0-r0
12.20.1-r0

Open the chart page →

30,326
docker-registry-browsergmelilloVerified publisher0.1.21 of 1See more

docker-registry-browser gmelillo 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
klausmeyer/docker-registry-browser:1.3.5430a440d95af
nodejs@12.18.4-r0
12.20.1-r0

Open the chart page →

4,108
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
nodejs@8.10.0~dfsg-2ubuntu0.4
8.10.0~dfsg-2ubuntu0.4+esm2

Open the chart page →

12,779
ethereumcloudnativeapp1.0.01 of 3See more

ethereum cloudnativeapp 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
nodejs@4.2.6~dfsg-1ubuntu4.1
4.2.6~dfsg-1ubuntu4.2+esm2

Open the chart page →

27,417
galaxy-stablecloudve2.0.01 of 5See more

galaxy-stable cloudve 2.0.0

1 of the 5 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
nodejs@9.11.1-1nodesource1
no fix listed

Open the chart page →

70,895
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
ibmcom/microclimate-theia:lateste17bdccc5030
nodejs@4.2.6~dfsg-1ubuntu4.1
4.2.6~dfsg-1ubuntu4.2+esm2

Open the chart page →

57,669
kubernetes-netskope-publisherkubernetes-netskope-publisherVerified publisher1.5.01 of 2See more

kubernetes-netskope-publisher kubernetes-netskope-publisher 1.5.0

1 of the 2 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
netskopeprivateaccess/publisher_u22:latest93e2fd164a93
http-parser@2.9.4-4
no fix listed

Open the chart page →

3,528
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
nodejs@10.19.0~dfsg-3ubuntu1
10.19.0~dfsg-3ubuntu1.1

Open the chart page →

17,779
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2020-8287.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
http-parser@2.7.1-2
nodejs@8.10.0~dfsg-2ubuntu0.4
2.7.1-2ubuntu0.1
8.10.0~dfsg-2ubuntu0.4+esm2

Open the chart page →

36,215

Container images carrying it

9 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
nodejs@4.2.6~dfsg-1ubuntu4.1
4.2.6~dfsg-1ubuntu4.2+esm2
1
galaxy/galaxy-init:v18.010267bad550e6
nodejs@9.11.1-1nodesource1
no fix listed
1
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
nodejs@12.17.0-r0
12.20.1-r0
1
ibmcom/microclimate-theia:lateste17bdccc5030
nodejs@4.2.6~dfsg-1ubuntu4.1
4.2.6~dfsg-1ubuntu4.2+esm2
1
klausmeyer/docker-registry-browser:1.3.5430a440d95af
nodejs@12.18.4-r0
12.20.1-r0
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
nodejs@10.19.0~dfsg-3ubuntu1
10.19.0~dfsg-3ubuntu1.1
1
netskopeprivateaccess/publisher_u22:latest93e2fd164a93
http-parser@2.9.4-4
no fix listed
1
openthread/otbr:latestf307f59f6432
nodejs@8.10.0~dfsg-2ubuntu0.4
8.10.0~dfsg-2ubuntu0.4+esm2
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
http-parser@2.7.1-2
nodejs@8.10.0~dfsg-2ubuntu0.4
2.7.1-2ubuntu0.1
8.10.0~dfsg-2ubuntu0.4+esm2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.