StackRadar

CVE-2025-13601

High

Advisory

Published 26 Nov 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.7
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
553
of 17,787 indexed, latest versions
Container images
644
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: glib2 security update

Carried by container images the latest versions of 553 of 17,787 indexed charts deploy, on 644 images.

Affected packageAffected versionsFixed inImages
glib2rpm2.56.1-2.el7, 2.56.1-4.el7_6, 2.56.1-5.el7, 2.56.1-7.el7+27 more0:2.56.1-11.el7_9, 0:2.56.4-168.el8_10, 0:2.68.4-18.el9_7.1327
glib2.0deb2.40.2-0ubuntu1, 2.48.2-0ubuntu1, 2.48.2-0ubuntu4.1, 2.48.2-0ubuntu4.4+37 more2.40.2-0ubuntu1.1+esm7, 2.48.2-0ubuntu4.8+esm5, 2.56.4-0ubuntu0.18.04.9+esm5, 2.64.6-1~ubuntu20.04.9+esm1+5 more317
OSV records
DEBIAN-CVE-2025-13601RHSA-2026:0936RHSA-2026:0991RHSA-2026:1608RLSA-2026:0936RLSA-2026:0991UBUNTU-CVE-2025-13601
Also known as
RHSA-2026:1324, RHSA-2026:1326, RHSA-2026:1465, RHSA-2026:1624, RHSA-2026:1625, RHSA-2026:1626, RHSA-2026:1627, USN-7942-1, USN-7942-2

Charts affected

553 by stars
ChartLatestAffected imagesRadar Score
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
glib2@2.56.4-156.el8
0:2.56.4-168.el8_10

Open the chart page →

11,577
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2025-13601.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10

Open the chart page →

3,697

Container images carrying it

644 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
dongjiang1989/lxcfs:v6.0.34bf9ae391948
glib2.0@2.64.6-1~ubuntu20.04.9
2.64.6-1~ubuntu20.04.9+esm1
1
dragonflyoss/client:v0.1.82edf3e921f4e0
glib2.0@2.74.6-2+deb12u2
2.74.6-2+deb12u8
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
glib2.0@2.84.4-3~deb13u1
2.84.4-3~deb13u2
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
glib2.0@2.56.4-0ubuntu0.18.04.8
2.56.4-0ubuntu0.18.04.9+esm5
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
glib2.0@2.56.4-0ubuntu0.18.04.8
2.56.4-0ubuntu0.18.04.9+esm5
1
felipecs8/app-db-connection-test:v129e06c9c6385
glib2.0@2.74.6-2+deb12u4
2.74.6-2+deb12u8
1
firefart/requesttracker:5.0.40d6249906d8c
glib2.0@2.74.6-2
2.74.6-2+deb12u8
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
glib2.0@2.64.6-1~ubuntu20.04.9
2.64.6-1~ubuntu20.04.9+esm1
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
glib2.0@2.74.6-2+deb12u6
2.74.6-2+deb12u8
1
fiware/mintaka:0.7.092a3c5cf43c0
glib2@2.56.4-158.el8
0:2.56.4-168.el8_10
1
fiware/mintaka:latestefc6793388cc
glib2@2.56.4-158.el8
0:2.56.4-168.el8_10
1
fiware/orion-ld:1.10.03c490a746f65
glib2@2.56.4-166.el8_10
0:2.56.4-168.el8_10
1
fluent/fluent-bit:4.0-debuge76397ef3983
glib2.0@2.74.6-2+deb12u7
2.74.6-2+deb12u8
1
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
glib2@2.68.4-14.el9_4.1
0:2.68.4-18.el9_7.1
1
gethue/hue:4.10.05702b2c37ff9
glib2.0@2.56.4-0ubuntu0.18.04.8
2.56.4-0ubuntu0.18.04.9+esm5
1
gethue/hue:latest7d5c1b9f8a79
glib2.0@2.72.4-0ubuntu2.5
2.72.4-0ubuntu2.7
1
graylog/graylog:6.1.1019de1aff48c2
glib2.0@2.72.4-0ubuntu2.4
2.72.4-0ubuntu2.7
1
gurolakman/oam:4.0.0ed8fd2062548
glib2@2.56.4-162.el8
0:2.56.4-168.el8_10
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
gurolakman/ussigw-core:1.0.48739565c3ea2
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
glib2@2.68.4-16.el9_6.2
0:2.68.4-18.el9_7.1
1
haveagitgat/tdarr:2.00.181256348872ce
glib2.0@2.64.6-1~ubuntu20.04.4
2.64.6-1~ubuntu20.04.9+esm1
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
glib2.0@2.64.3-1~ubuntu20.04.1
2.64.6-1~ubuntu20.04.9+esm1
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
glib2.0@2.64.6-1~ubuntu20.04.6
2.64.6-1~ubuntu20.04.9+esm1
1
hazelcast/management-center:5.3.2f9d34300d330
glib2@2.56.4-161.el8
0:2.56.4-168.el8_10
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
glib2.0@2.74.6-2
2.74.6-2+deb12u8
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
glib2.0@2.56.4-0ubuntu0.18.04.6
2.56.4-0ubuntu0.18.04.9+esm5
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
glib2.0@2.48.2-0ubuntu1
2.48.2-0ubuntu4.8+esm5
1
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
glib2@2.56.4-159.el8
0:2.56.4-168.el8_10
1
ibmcom/app-nav-api:1.0.1ce9d2a564273
glib2@2.56.1-2.el7
0:2.56.1-11.el7_9
1
ibmcom/app-nav-controller:1.0.1ee4624ba513d
glib2@2.56.1-2.el7
0:2.56.1-11.el7_9
1
ibmcom/app-nav-init:1.0.1240ff499eb5b
glib2@2.56.1-2.el7
0:2.56.1-11.el7_9
1
ibmcom/app-nav-ui:1.0.1e2a86997b36b
glib2@2.56.1-2.el7
0:2.56.1-11.el7_9
1
ibmcom/app-nav-was-controller:1.0.1a6748792da26
glib2@2.56.1-4.el7_6
0:2.56.1-11.el7_9
1
ibmcom/bai-admin-dev:19.0.202d882f2836e
glib2@2.56.1-5.el7
0:2.56.1-11.el7_9
1
ibmcom/bai-elasticsearch-dev:19.0.25441dba2fa00
glib2@2.56.1-5.el7
0:2.56.1-11.el7_9
1
ibmcom/bai-flink-dev:19.0.2e31ff09e8aad
glib2@2.56.1-5.el7
0:2.56.1-11.el7_9
1
ibmcom/bai-flink-zookeeper-dev:19.0.258548034cf55
glib2@2.56.1-5.el7
0:2.56.1-11.el7_9
1
ibmcom/bai-init-dev:19.0.2b138f1eac0b1
glib2@2.56.1-5.el7
0:2.56.1-11.el7_9
1
ibmcom/bai-setup-dev:19.0.2b8e8df11072d
glib2@2.56.1-5.el7
0:2.56.1-11.el7_9
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
glib2@2.56.4-8.el8
0:2.56.4-168.el8_10
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
glib2@2.56.4-8.el8
0:2.56.4-168.el8_10
1
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
glib2@2.56.4-8.el8
0:2.56.4-168.el8_10
1
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
glib2@2.56.4-1.el8
0:2.56.4-168.el8_10
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.