StackRadar

CVE-2025-13601

High

Advisory

Published 26 Nov 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.7
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
555
of 17,787 indexed, latest versions
Container images
646
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: glib2 security update

Carried by container images the latest versions of 555 of 17,787 indexed charts deploy, on 646 images.

Affected packageAffected versionsFixed inImages
glib2rpm2.56.1-2.el7, 2.56.1-4.el7_6, 2.56.1-5.el7, 2.56.1-7.el7+27 more0:2.56.1-11.el7_9, 0:2.56.4-168.el8_10, 0:2.68.4-18.el9_7.1329
glib2.0deb2.40.2-0ubuntu1, 2.48.2-0ubuntu1, 2.48.2-0ubuntu4.1, 2.48.2-0ubuntu4.4+37 more2.40.2-0ubuntu1.1+esm7, 2.48.2-0ubuntu4.8+esm5, 2.56.4-0ubuntu0.18.04.9+esm5, 2.64.6-1~ubuntu20.04.9+esm1+5 more317
OSV records
DEBIAN-CVE-2025-13601RHSA-2026:0936RHSA-2026:0991RHSA-2026:1608RLSA-2026:0936RLSA-2026:0991UBUNTU-CVE-2025-13601
Also known as
RHSA-2026:1324, RHSA-2026:1326, RHSA-2026:1465, RHSA-2026:1624, RHSA-2026:1625, RHSA-2026:1626, RHSA-2026:1627, USN-7942-1, USN-7942-2

Charts affected

555 by stars
ChartLatestAffected imagesRadar Score
wexa-studiowexa-studio1.2.01 of 15See more

wexa-studio wexa-studio 1.2.0

1 of the 15 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10

Open the chart page →

14,618
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
glib2.0@2.72.4-0ubuntu2.3
2.72.4-0ubuntu2.7

Open the chart page →

14,172
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
glib2@2.56.4-156.el8
0:2.56.4-168.el8_10

Open the chart page →

11,592
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10

Open the chart page →

3,697

Container images carrying it

646 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
glib2@2.68.4-16.el9_6.2
0:2.68.4-18.el9_7.1
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
glib2@2.56.4-158.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
glib2@2.56.4-162.el8
0:2.56.4-168.el8_10
1
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
glib2@2.68.4-14.el9_4.1
0:2.68.4-18.el9_7.1
1
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
glib2@2.68.4-14.el9_4.1
0:2.68.4-18.el9_7.1
1
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
glib2@2.68.4-18.el9_7
0:2.68.4-18.el9_7.1
1
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
glib2@2.68.4-14.el9_4.1
0:2.68.4-18.el9_7.1
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
glib2@2.56.4-8.el8
0:2.56.4-168.el8_10
1
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
glib2@2.56.4-165.el8_10
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
glib2@2.56.4-10.el8_4
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
glib2@2.56.4-158.el8
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
glib2@2.56.4-158.el8
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
glib2@2.56.4-156.el8
0:2.56.4-168.el8_10
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
glib2@2.56.4-165.el8_10
0:2.56.4-168.el8_10
1
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
glib2@2.68.4-14.el9_4.1
0:2.68.4-18.el9_7.1
1
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
glib2@2.68.4-16.el9_6.2
0:2.68.4-18.el9_7.1
1
quay.io/maximilianopizarro/neuralbank-backend:latesta53899fcfc01
glib2@2.68.4-18.el9_7
0:2.68.4-18.el9_7.1
1
quay.io/maximilianopizarro/neuralbank-frontend:latest5f4572ef6d6f
glib2@2.68.4-18.el9_7
0:2.68.4-18.el9_7.1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.