StackRadar

CVE-2025-15281

High

Advisory

Published 20 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,564
of 17,781 indexed, latest versions
Container images
1,694
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2025-15281 affecting package glibc for versions less than 2.38-18

Carried by container images the latest versions of 1,564 of 17,781 indexed charts deploy, on 1,694 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+49 more2.23-0ubuntu11.3+esm9, 2.27-3ubuntu1.6+esm6, 2.31-0ubuntu9.18+esm1, 2.35-0ubuntu3.13+4 more1,667
glibcapk2.37-r6, 2.38-r6, 2.39-r7, 2.40-r1+6 more2.42-r719
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.38-16.azl32.38-181
OSV records
CGA-57jc-36hq-46xfDEBIAN-CVE-2025-15281UBUNTU-CVE-2025-15281AZL-74819
Also known as
CGA-g8jh-2h2x-q44c, USN-8005-1

Charts affected

1,564 by stars
ChartLatestAffected imagesRadar Score
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

5,352
milvusmilvus-helm5.0.272 of 4See more

milvus milvus-helm 5.0.27

2 of the 4 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.13
milvusdb/etcd:3.5.25-r1fededb2f2d63
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.13

Open the chart page →

10,670
prefect-serverprefectVerified publisher2026.9.32126051 of 2See more

prefect-server prefect 2026.9.3212605

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

5,786
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.18+esm1

Open the chart page →

18,509
codefreshcodefresh-onpremOfficialVerified publisher2.12.134 of 42See more

codefresh codefresh-onprem 2.12.13

4 of the 42 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
glibc@2.36-9+deb12u8
2.36-9+deb12u14
bitnamilegacy/rabbitmq:4.1.39e635efba431
glibc@2.36-9+deb12u10
2.36-9+deb12u14
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

14,956
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2api:3.86f56d239d280
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2auth:3.833ecfda16608
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2notifier:3.8f190a6212195
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2rulesengine:3.8259503496ff9
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2scheduler:3.8b1de2055c362
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2sensorcontainer:3.8b1a338f64773
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2stream:3.81c8904a3bf67
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2timersengine:3.81bf35bfaf00c
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2web:3.809989a26c8b7
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2workflowengine:3.819fdfffdbba8
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1

Open the chart page →

96,419
supabasetokens-studioVerified publisher1.0.05 of 14See more

supabase tokens-studio 1.0.0

5 of the 14 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
supabase/edge-runtime:v1.59.0eff9c554d649
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/postgres-meta:v0.84.2d0a96973e9f1
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/realtime:v2.33.8d207e6e23ad3
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/studio:20241021-9f9b08326d8070c55e9
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.42 of 2See more

renterd artur9010 1.4.4

2 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
glibc@2.36-9+deb12u7
2.36-9+deb12u14
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

8,493
budibasebudibase0.0.0-master1 of 7See more

budibase budibase 0.0.0-master

1 of the 7 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

10,775
druiddruid-helmVerified publisher37.0.21 of 3See more

druid druid-helm 37.0.2

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
apache/druid:37.0.00116fb802786
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,812
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

3,454
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,025
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

7,857
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.7

Open the chart page →

1,240
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

3,480
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1

Open the chart page →

11,405
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.13

Open the chart page →

4,244
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,012
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
2.36-9+deb12u14
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.7

Open the chart page →

5,357
envoy-gatewayhelmforgeVerified publisher2.1.01 of 3See more

envoy-gateway helmforge 2.1.0

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.15.024528cf5229d
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

2,379
ilumilumOfficialVerified publisher6.7.33 of 19See more

ilum ilum 6.7.3

3 of the 19 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
glibc@2.36-9+deb12u9
2.36-9+deb12u14
bitnamilegacy/postgresql:16233f361c5819
glibc@2.36-9+deb12u9
2.36-9+deb12u14
ilum/marquez:0.54.06e1d709d41f8
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

23,228
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7

Open the chart page →

3,395
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

7,007
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
glibc@2.41-12
2.41-12+deb13u2

Open the chart page →

5,634
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
netrisai/controller-telescope:4.6.0.00414d82948a8b2
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
glibc@2.31-0ubuntu9.16
2.31-0ubuntu9.18+esm1
netrisai/controller-web-session-generator:0.2.0a030a31289f4
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.18+esm1

Open the chart page →

30,326
syftopenmined0.9.53 of 6See more

syft openmined 0.9.5

3 of the 6 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
glibc@2.36-9+deb12u4
2.36-9+deb12u14
openmined/syft-backend:0.9.5b72f74a68b32
glibc@2.40-r8
2.42-r7
openmined/syft-frontend:0.9.5d11524a3854a
glibc@2.40-r8
2.42-r7

Open the chart page →

17,245
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

8,489
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm6
platform9community/api-gateway:latest40a4970de568
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm6
platform9community/customers-service:latest2089811e5cc6
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm6
platform9community/vets-service:latestd1165c94dfb3
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm6
platform9community/visits-service:latest8d11b50368c6
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm6

Open the chart page →

41,872
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.13
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.13

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1

Open the chart page →

11,782
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1

Open the chart page →

7,268
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1

Open the chart page →

6,348
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

5,630
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1

Open the chart page →

30,668
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

6,457
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
glibc@2.31-0ubuntu9.14
2.31-0ubuntu9.18+esm1

Open the chart page →

12,111
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

3,033
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

5,896
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

4,903
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7

Open the chart page →

8,636
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

13,350
thehivestrangebee-helmOfficialVerified publisher1.0.63 of 7See more

thehive strangebee-helm 1.0.6

3 of the 7 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
glibc@2.36-9+deb12u9
2.36-9+deb12u14
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

16,210
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

14,240
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

7,930
cloudflaredartur9010Verified publisher1.0.91 of 3See more

cloudflared artur9010 1.0.9

1 of the 3 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
glibc@2.41-12+deb13u1
2.41-12+deb13u2

Open the chart page →

2,984
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
glibc@2.36-9+deb12u7
2.36-9+deb12u14
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
glibc@2.36-9+deb12u8
2.36-9+deb12u14
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

17,263
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1

Open the chart page →

52,919
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2025-15281.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

5,870

Container images carrying it

1,694 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
gchq/hdfs:3.3.35ec58edbb2db
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.7
3
guacamole/guacamole:1.6.0f344085e618b
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7
3
jacobalberty/unifi:v10.0.162896c0ab82d33
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
3
library/nginx:1.25:1.25.5a484819eb602
glibc@2.36-9+deb12u7
2.36-9+deb12u14
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm9
3
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1
3
xenondb/percona:5.7.330e26872a2b67
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
glibc@2.36-9+deb12u9
2.36-9+deb12u14
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
2.36-9+deb12u14
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
glibc@2.36-9+deb12u7
2.36-9+deb12u14
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
glibc@2.36-9+deb12u13
2.36-9+deb12u14
3
quay.io/devtron/ai-agent:0.0.16545dac92173
glibc@2.36-9+deb12u8
2.36-9+deb12u14
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.18+esm1
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
glibc@2.23-0ubuntu11.3
2.23-0ubuntu11.3+esm9
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
glibc@2.36-9+deb12u13
2.36-9+deb12u14
3
apache/druid:37.0.00116fb802786
glibc@2.36-9+deb12u13
2.36-9+deb12u14
2
apache/nifi-registry:1.26.07cdfd8deec92
glibc@2.35-0ubuntu3.7
2.35-0ubuntu3.13
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.7
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
bitnamilegacy/etcd:latest99b408c15272
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
glibc@2.36-9+deb12u8
2.36-9+deb12u14
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
bitnamilegacy/redis:latest5927ff3702df
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
blockstack/stacks-core:3.2.0.0.0f79944317326
glibc@2.36-9+deb12u10
2.36-9+deb12u14
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
glibc@2.36-9+deb12u4
2.36-9+deb12u14
2
clickhouse/clickhouse-server:24.2ed9640bfff07
glibc@2.31-0ubuntu9.15
2.31-0ubuntu9.18+esm1
2
eqalpha/keydb:latest6537505c4235
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm6
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
glibc@2.36-9
2.36-9+deb12u14
2
gradiant/ueransim:3.2.6015b30d5fa0f
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.13
2
grafana/alloy:v1.8.17790f6f7fbd8
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.