StackRadar

CVE-2025-15661

Medium

Advisory

Published 18 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
513
of 17,781 indexed, latest versions
Container images
514
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 513 of 17,781 indexed charts deploy, on 514 images.

Affected packageAffected versionsFixed inImages
libssh2deb1.5.0-2ubuntu0.1, 1.8.0-2.1build1, 1.10.0-3, 1.10.0-3+b1+6 more1.10.0-3+deb12u1, 1.11.0-4.1ubuntu0.24.04.2, 1.11.1-1+deb13u1, 1.11.1-1+e4+2 more514
OSV records
DEBIAN-CVE-2025-15661UBUNTU-CVE-2025-15661ECHO-16dd-65e4-250c
Also known as
USN-8486-1

Charts affected

513 by stars
ChartLatestAffected imagesRadar Score
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

6,161
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

3,860
csghubcsghubVerified publisher2.4.36 of 34See more

csghub csghub 2.4.3

6 of the 34 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
opencsghq/agenticflow:ee-v0.6-52f03fead54db
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
opencsghq/kubectl:latestb6d87e1048c2
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

58,897
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

15,380
cspconsolecspconsole1.3.113 of 5See more

cspconsole cspconsole 1.3.11

3 of the 5 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
cspconsole/report-collector:1.0.15839750248193b
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

12,274
cypikcypik-app0.1.01 of 2See more

cypik cypik-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

7,503
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

16,604
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

5,062
sentry-relaydasmeta0.1.21 of 1See more

sentry-relay dasmeta 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
getsentry/relay:24.10.0ba7bf9163219
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

3,571
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

10,090
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

6,075
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

9,607
devtron-enterprisedevtron48.0.02 of 28See more

devtron-enterprise devtron 48.0.0

2 of the 28 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

68,240
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

9,607
devtron-enterprisedevtron-labs48.0.02 of 28See more

devtron-enterprise devtron-labs 48.0.0

2 of the 28 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.31 of 11See more

devtron-operator devtron-labs 0.23.3

1 of the 11 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

32,902
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

19,224
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

7,141
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

5,174
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

5,966
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

14,627
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

3,822
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

3,822
dnation-kubernetes-monitoring-stackdnationcloud4.0.21 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

1 of the 17 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

21,641
dominodomino-iisasVerified publisher0.3.11 of 3See more

domino domino-iisas 0.3.1

1 of the 3 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/iisas/domino-frontend:k8s8e53861be292
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

10,270
duckdb-uiduckdb-ui0.5.21 of 1See more

duckdb-ui duckdb-ui 0.5.2

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

4,460
postgres-backup-localduck-helm0.1.51 of 1See more

postgres-backup-local duck-helm 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
prodrigestivill/postgres-backup-local:latestf70742ebe42b
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

3,455
arbitrumdysnixVerified publisher0.1.11 of 1See more

arbitrum dysnix 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.1.0-7d1d84ce95865866129
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

9,244
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

13,391
esphomeegebackVerified publisher2.0.251 of 1See more

esphome egeback 2.0.25

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
esphome/esphome:2026.7.44866347cb5b4
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

3,121
uptime-kumaegebackVerified publisher2.0.121 of 1See more

uptime-kuma egeback 2.0.12

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

30,159
kube-ecp-stackemqx-operator2.5.12 of 16See more

kube-ecp-stack emqx-operator 2.5.1

2 of the 16 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
emqx/ecp-ui:2.5.1e33e9816f147
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
library/telegraf:1.27507a3eecf809
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

23,685
kube-packetloss-exporterenixVerified publisher0.2.11 of 2See more

kube-packetloss-exporter enix 0.2.1

1 of the 2 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.3164614ef8290f
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

6,131
wordpresseoc-chartsVerified publisher0.14.41 of 1See more

wordpress eoc-charts 0.14.4

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
library/wordpress:6.8.3-apache30bff39330d1
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

7,233
matomoeosc-lot-1Verified publisher0.2.01 of 1See more

matomo eosc-lot-1 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
library/matomo:5.1.2-apache2415789e1602
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

5,290
espocrmespocrmVerified publisher1.0.11 of 2See more

espocrm espocrm 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
espocrm/espocrm:9.3.101b5a24504ed9
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

6,431
powfaucetethereum-helm-chartsVerified publisher1.2.11 of 1See more

powfaucet ethereum-helm-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
pk910/powfaucet:v2-stable3dcae6a62896
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

4,456
beeport-uiethersphereVerified publisher0.76.21 of 3See more

beeport-ui ethersphere 0.76.2

1 of the 3 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

7,368
multichain-uiethersphereVerified publisher0.73.11 of 3See more

multichain-ui ethersphere 0.73.1

1 of the 3 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

7,368
event-generatorfalcosecurity0.4.01 of 1See more

event-generator falcosecurity 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
falcosecurity/event-generator:latest932956d86c99
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

3,773
rospoferama0.4.31 of 1See more

rospo ferama 0.4.3

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

6,026
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

10,741
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

5,039
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
libssh2@1.11.1-1
1.11.1-1+deb13u1
fireflyiii/data-importer:version-2.2.3ab52bf932546
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

10,260
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

4,829
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

64,489
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

8,902
esphomegabe565Verified publisher0.15.01 of 1See more

esphome gabe565 0.15.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
ghcr.io/esphome/esphome:latest000c5ee5ee96
libssh2@1.11.1-1
1.11.1-1+deb13u1

Open the chart page →

3,112
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

13,241
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2025-15661.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1

Open the chart page →

9,077

Container images carrying it

514 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
libssh2@1.11.1-1
1.11.1-1+deb13u1
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
libssh2@1.11.1-1
1.11.1-1+deb13u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
libssh2@1.11.1-1
1.11.1-1+deb13u1
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
libssh2@1.10.0-3+b1
1.10.0-3+deb12u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.