StackRadar

CVE-2025-3576

Medium

Advisory

Published 15 Apr 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,559
of 17,787 indexed, latest versions
Container images
1,691
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: krb5 security update

Carried by container images the latest versions of 1,559 of 17,787 indexed charts deploy, on 1,691 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+40 more1.12+dfsg-2ubuntu5.4+esm7, 1.13.2+dfsg-5ubuntu2.2+esm7, 1.16-2ubuntu0.4+esm5, 1.17-6ubuntu4.11+4 more1,447
krb5rpm1.16.1-22.el8, 1.17-9.el8, 1.17-18.el8, 1.17-19.el8_2+25 more0:1.17-19.el8_2.3, 0:1.18.2-9.el8_4.3, 0:1.18.2-16.el8_6.4, 0:1.18.2-26.el8_8.5+5 more244
OSV records
DEBIAN-CVE-2025-3576RHSA-2025:13664RHSA-2025:13777RHSA-2025:15001RHSA-2025:15002RHSA-2025:15003RHSA-2025:15004RHSA-2025:8411RHSA-2025:9430RLSA-2025:8411RLSA-2025:9430UBUNTU-CVE-2025-3576DLA-4195-1SUSE-SU-2025:3699-1
Also known as
USN-7542-1

Charts affected

1,559 by stars
ChartLatestAffected imagesRadar Score
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5

Open the chart page →

15,984
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
krb5@1.12+dfsg-2ubuntu5
1.12+dfsg-2ubuntu5.4+esm7

Open the chart page →

41,455
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
krb5@1.17-6ubuntu4.9
1.17-6ubuntu4.11

Open the chart page →

7,883
wraftwraft0.1.122 of 9See more

wraft wraft 0.1.12

2 of the 9 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
typesense/typesense:28.0.rc35dea1b62b7b6e
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5

Open the chart page →

10,131
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
krb5@1.19.2-2ubuntu0.1
1.19.2-2ubuntu0.7

Open the chart page →

9,832
backendzymtraceOfficialVerified publisher26.9.11 of 6See more

backend zymtrace 26.9.1

1 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/postgres:17.4304ab8135187
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

10,408
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

4,566
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
krb5@1.18.2-14.el8
0:1.18.2-32.el8_10

Open the chart page →

7,713
open5gsadaptivenetlabVerified publisher1.0.32 of 3See more

open5gs adaptivenetlab 1.0.3

2 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
free5gmano/nextepc-mongodb:latest36f806935519
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2+esm7
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

25,507
bootaerokube1.0.12 of 4See more

boot aerokube 1.0.1

2 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/aerokube/jumphost:1.0.170fd7c00418d
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
quay.io/aerokube/keygen:1.0.1578934444f04
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

7,915
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

4,685
airports-kafkaairports-kafka0.1.01 of 2See more

airports-kafka airports-kafka 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

4,547
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5

Open the chart page →

13,689
akto-ai-guardrails-v2akto0.3.01 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

1 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.0-v172035434f455
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

9,400
akto-mini-testing-kafkaakto1.42.12 of 5See more

akto-mini-testing-kafka akto 1.42.1

2 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
krb5@1.18.2-30.el8_10
0:1.18.2-32.el8_10
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
krb5@1.18.2-30.el8_10
0:1.18.2-32.el8_10

Open the chart page →

6,395
akto-protectionakto0.1.02 of 4See more

akto-protection akto 0.1.0

2 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5

Open the chart page →

11,283
akto-regional-setupakto1.3.11 of 9See more

akto-regional-setup akto 1.3.1

1 of the 9 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.072035434f455
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

7,786
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
hotavneesh/eclipse-jdtls:latesta4579b163414
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

4,881
mautrix-signalalexanderbadel0.1.11 of 2See more

mautrix-signal alexanderbadel 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
signald/signald:0.18.20ffad7ccc2eb
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

2,099
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

5,898
zunivers-ninjaalexpressoVerified publisher1.31.21 of 2See more

zunivers-ninja alexpresso 1.31.2

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/neo4j:5.18.18f01f7bb053e
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7

Open the chart page →

1,165
katalogalpineworks0.1.21 of 5See more

katalog alpineworks 0.1.2

1 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-frontend:v1.0.734b76dcb1c10
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7

Open the chart page →

4,414
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5

Open the chart page →

20,233
amorphieamorphie0.1.23 of 18See more

amorphie amorphie 0.1.2

3 of the 18 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
camunda/zeebe:8.4.5ab5abc09e407
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
hazelcast/management-center:5.3.2f9d34300d330
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

28,212
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4

Open the chart page →

7,559
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5

Open the chart page →

20,233
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
krb5@1.16-2ubuntu0.4
1.16-2ubuntu0.4+esm5

Open the chart page →

11,579
games-on-whalesangelnu2.0.03 of 7See more

games-on-whales angelnu 2.0.0

3 of the 7 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

42,345
ddosifyanteonVerified publisher1.7.53 of 13See more

ddosify anteon 1.7.5

3 of the 13 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
ddosify/selfhosted_hammermanager:1.2.471b8768f49bc
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

25,720
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
krb5@1.18.2-31.el8_10
0:1.18.2-32.el8_10

Open the chart page →

2,454
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,231
apimap-developerapimapOfficialVerified publisher1.4.11 of 1See more

apimap-developer apimap 1.4.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
apimap/developer:v1.3.1406d3858e20c
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,353
apimap-portalapimapOfficialVerified publisher2.4.01 of 1See more

apimap-portal apimap 2.4.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
apimap/portal:v2.4.0041a4790c65c
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,396
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6

Open the chart page →

2,947
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

6,227
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
library/mongo:5.0.6-focal8e70544b6c76
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

19,784
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
krb5@1.18.2-14.el8
0:1.18.2-16.el8_6.4
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
krb5@1.18.2-14.el8
0:1.18.2-16.el8_6.4

Open the chart page →

12,520
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/postgres:14.32d1e636f0778
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

3,166
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
library/rabbitmq:3.12.1-managementf020c06da226
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7

Open the chart page →

15,707
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
library/rabbitmq:3.12.1-managementf020c06da226
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

17,110
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
krb5@1.18.2-26.el8_9
0:1.18.2-32.el8_10

Open the chart page →

2,404
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
krb5@1.18.2-22.el8_7
0:1.18.2-32.el8_10

Open the chart page →

4,043
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
krb5@1.18.2-26.el8_9
0:1.18.2-32.el8_10

Open the chart page →

2,568
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

3,310
cloud-portalappuio0.4.11 of 1See more

cloud-portal appuio 0.4.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

1,286
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
krb5@1.20.1-2
1.20.1-2+deb12u4

Open the chart page →

4,899
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
krb5@1.18.2-22.el8_7
0:1.18.2-32.el8_10

Open the chart page →

2,902
appwriteappwrite-helmVerified publisher1.3.23 of 8See more

appwrite appwrite-helm 1.3.2

3 of the 8 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:10.6.12-debian-11-r1315edb5643b73
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
bitnamilegacy/redis:7.0.10-debian-11-r059293f5206b7
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
kubegems/bitnami-shell:12-debian-12-r24e42e3aaacdd3
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

9,847
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
krb5@1.20.1-6ubuntu2.5
1.20.1-6ubuntu2.6

Open the chart page →

7,338
arlas-aiasarlas-stackVerified publisher28.8.07 of 22See more

arlas-aias arlas-stack 28.8.0

7 of the 22 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4

Open the chart page →

40,411

Container images carrying it

1,691 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
esphome/esphome:2024.3.09ab8cc88b28c
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
esphome/esphome:2024.12.2b2c6322700ac
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
esphome/esphome:2025.3.0def8b6e4f517
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2+esm7
1
ethersphere/ethproxy:latest3a8a3926caa2
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7
1
evk02/mlflow:2.2.1ef6ff257ef35
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
expediagroup/pitchfork:1.314f2cf61e7de9
krb5@1.18.3-6
1.18.3-6+deb11u7
1
factly/hunting:0.2.0-stagv1.2ca5bc71d1d5c
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
fanzynoodle/smeejas:0.0.15f9916c1a287
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
farberg/apache-knox-docker:1.6.14b4a22487394
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
felipecs8/app-db-connection-test:v129e06c9c6385
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
firefart/requesttracker:5.0.40d6249906d8c
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
fiware/mintaka:0.7.092a3c5cf43c0
krb5@1.18.2-14.el8
0:1.18.2-16.el8_6.4
1
fiware/mintaka:latestefc6793388cc
krb5@1.18.2-14.el8
0:1.18.2-16.el8_6.4
1
flag5/clustersecret:0.0.94ad5748bfcc6
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
flanksource/apm-hub:v0.0.471dacc3195bf9
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7
1
flofree/base-project:2.1.16b6486c5f81e
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
fluent/fluent-bit:2.2.00fa18c71d821
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
1
fluent/fluent-bit:2.15766d881ddb1
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
fluent/fluent-bit:2.1.96a1d0c693dfa
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
fluent/fluent-bit:4.0.4ca08b7d2df5b
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
flyway/flyway:9.1545b5d7cdc75a
krb5@1.17-6ubuntu4.2
1.17-6ubuntu4.11
1
fnzv/dump1090:latestb3079b95c336
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
1
free5gmano/nextepc-mongodb:latest36f806935519
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2+esm7
1
freedom98/flask:k3.0d7ce1533f297
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
galaxy/cloudman-server:lateste5c265fe9fcd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
galaxy/galaxy-init:v18.010267bad550e6
krb5@1.12+dfsg-2ubuntu5.3
1.12+dfsg-2ubuntu5.4+esm7
1
galaxy/galaxy-stable:v18.018e577a626dfd
krb5@1.12+dfsg-2ubuntu5.3
1.12+dfsg-2ubuntu5.4+esm7
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
gchq/accumulo:2.0.1c460bb587d6d
krb5@1.20.1-6ubuntu2.3
1.20.1-6ubuntu2.6
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
gethue/hue:4.11.011b649636e68
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
gethue/hue:4.10.05702b2c37ff9
krb5@1.16-2ubuntu0.2
1.16-2ubuntu0.4+esm5
1
getsentry/relay:24.10.0ba7bf9163219
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
glasskube/operator:0.12.2be5133100d63
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7
1
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
krb5@1.19.2-2ubuntu0.6
1.19.2-2ubuntu0.7
1
golenski/db-init:1.0.086ca17cd3063
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7
1
gophish/gophish:0.12.18a57cd171999
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7
1
gotify/server:2.1.409c79bc1e403
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.