CVE-2025-24201
CriticalKEVAdvisory
Published 11 Mar 2025In the index since 8 Sept 2026
- Severity
- Critical
- worst across findings
- CVSS
- 10.0
- base score, highest
- EPSS
- 0.038
- 89th percentile
- CISA KEV
- Listed
- since 13 Mar 2025
- Charts affected
- 3
- of 17,781 indexed, latest versions
- Container images
- 3
- deployed by those charts
- Fix available
- 1 of 3
- affected packages
Red Hat Security Advisory: webkit2gtk3 security update
Carried by container images the latest versions of 3 of 17,781 indexed charts deploy, on 3 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| qtwebkit-opensource-srcdeb | 5.212.0~alpha4-1ubuntu2.1, 5.212.0~alpha4-36 | no fix listed | 2 |
| webkit2gtkdeb | 2.38.6-0ubuntu0.20.04.1 | no fix listed | 1 |
| webkit2gtk3rpm | 2.42.5-1.el9 | 0:2.46.6-2.el9_5 | 1 |
- OSV records
- UBUNTU-CVE-2025-24201RHSA-2025:2864
- Also known as
- RHSA-2025:2997
Charts affected
3 by stars
Container images carrying it
3 by charts deploying them
A fixed version is listed for 1 of the 3 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| codetogether/ | 4348c8a38752 | webkit2gtk3 | 0:2.46.6-2.el9_5 | 1 |
| fiware/ | 29456835bb2c | qtwebkit-opensource-src webkit2gtk | no fix listed no fix listed | 1 |
| qonstrukt/ | 089af7925aa1 | qtwebkit-opensource-src | no fix listed | 1 |