StackRadar

CVE-2025-27556

Medium

Advisory

Published 2 Apr 2025In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.8
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
8
of 17,781 indexed, latest versions
Container images
8
deployed by those charts
Fix available
1 of 1
affected package

Django Potential Denial of Service (DoS) on Windows

Carried by container images the latest versions of 8 of 17,781 indexed charts deploy, on 8 images.

Affected packageAffected versionsFixed inImages
djangopypi5.0.3, 5.0.4, 5.0.7, 5.0.9+2 more5.0.14, 5.1.88
OSV records
GHSA-wqfg-m96j-85vm
Also known as
BIT-django-2025-27556, PYSEC-2025-14

Charts affected

8 by stars
ChartLatestAffected imagesRadar Score
convertigoconvertigoOfficialVerified publisher8.4.31 of 5See more

convertigo convertigo 8.4.3

1 of the 5 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
baserow/baserow:1.30.1df0c42eb67e8
django@5.0.9
5.0.14

Open the chart page →

17,404
healthchecksgabe565Verified publisher0.17.01 of 1See more

healthchecks gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
django@5.1.4
5.1.8

Open the chart page →

2,286
anteonanteonVerified publisher2.6.41 of 13See more

anteon anteon 2.6.4

1 of the 13 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:2.3.11e5be48b37348
django@5.0.7
5.0.14

Open the chart page →

22,202
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
django@5.1.1
5.1.8

Open the chart page →

13,761
verbacapverbacapVerified publisher1.0.71 of 1See more

verbacap verbacap 1.0.7

1 of the 1 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
django@5.0.4
5.0.14

Open the chart page →

2,233
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
django@5.0.9
5.0.14

Open the chart page →

10,145
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
opencsghq/csgship-web:v0.4.0c36a5bac3cf0
django@5.0.3
5.0.14

Open the chart page →

11,335
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-27556.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
django@5.1.1
5.1.8

Open the chart page →

6,075

Container images carrying it

8 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
baserow/backend:1.31.1e0b3c8130b91
django@5.0.9
5.0.14
1
baserow/baserow:1.30.1df0c42eb67e8
django@5.0.9
5.0.14
1
ddosify/selfhosted_alaz_backend:2.3.11e5be48b37348
django@5.0.7
5.0.14
1
opencsghq/csgship-web:v0.4.0c36a5bac3cf0
django@5.0.3
5.0.14
1
sissbruecker/linkding:1.35.00c5dddf0b37c
django@5.1.1
5.1.8
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
django@5.1.4
5.1.8
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
django@5.0.4
5.0.14
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
django@5.1.1
5.1.8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.