StackRadar

CVE-2025-3576

Medium

Advisory

Published 15 Apr 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,559
of 17,787 indexed, latest versions
Container images
1,691
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: krb5 security update

Carried by container images the latest versions of 1,559 of 17,787 indexed charts deploy, on 1,691 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+40 more1.12+dfsg-2ubuntu5.4+esm7, 1.13.2+dfsg-5ubuntu2.2+esm7, 1.16-2ubuntu0.4+esm5, 1.17-6ubuntu4.11+4 more1,447
krb5rpm1.16.1-22.el8, 1.17-9.el8, 1.17-18.el8, 1.17-19.el8_2+25 more0:1.17-19.el8_2.3, 0:1.18.2-9.el8_4.3, 0:1.18.2-16.el8_6.4, 0:1.18.2-26.el8_8.5+5 more244
OSV records
DEBIAN-CVE-2025-3576RHSA-2025:13664RHSA-2025:13777RHSA-2025:15001RHSA-2025:15002RHSA-2025:15003RHSA-2025:15004RHSA-2025:8411RHSA-2025:9430RLSA-2025:8411RLSA-2025:9430UBUNTU-CVE-2025-3576DLA-4195-1SUSE-SU-2025:3699-1
Also known as
USN-7542-1

Charts affected

1,559 by stars
ChartLatestAffected imagesRadar Score
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5

Open the chart page →

15,984
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
krb5@1.12+dfsg-2ubuntu5
1.12+dfsg-2ubuntu5.4+esm7

Open the chart page →

41,455
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
krb5@1.17-6ubuntu4.9
1.17-6ubuntu4.11

Open the chart page →

7,883
wraftwraft0.1.122 of 9See more

wraft wraft 0.1.12

2 of the 9 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
typesense/typesense:28.0.rc35dea1b62b7b6e
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5

Open the chart page →

10,131
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
krb5@1.19.2-2ubuntu0.1
1.19.2-2ubuntu0.7

Open the chart page →

9,832
backendzymtraceOfficialVerified publisher26.9.11 of 6See more

backend zymtrace 26.9.1

1 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/postgres:17.4304ab8135187
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

10,408
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

4,566
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
krb5@1.18.2-14.el8
0:1.18.2-32.el8_10

Open the chart page →

7,713
open5gsadaptivenetlabVerified publisher1.0.32 of 3See more

open5gs adaptivenetlab 1.0.3

2 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
free5gmano/nextepc-mongodb:latest36f806935519
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2+esm7
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

25,507
bootaerokube1.0.12 of 4See more

boot aerokube 1.0.1

2 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/aerokube/jumphost:1.0.170fd7c00418d
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
quay.io/aerokube/keygen:1.0.1578934444f04
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

7,915
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

4,685
airports-kafkaairports-kafka0.1.01 of 2See more

airports-kafka airports-kafka 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

4,547
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5

Open the chart page →

13,689
akto-ai-guardrails-v2akto0.3.01 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

1 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.0-v172035434f455
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

9,400
akto-mini-testing-kafkaakto1.42.12 of 5See more

akto-mini-testing-kafka akto 1.42.1

2 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
krb5@1.18.2-30.el8_10
0:1.18.2-32.el8_10
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
krb5@1.18.2-30.el8_10
0:1.18.2-32.el8_10

Open the chart page →

6,395
akto-protectionakto0.1.02 of 4See more

akto-protection akto 0.1.0

2 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5

Open the chart page →

11,283
akto-regional-setupakto1.3.11 of 9See more

akto-regional-setup akto 1.3.1

1 of the 9 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.072035434f455
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

7,786
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
hotavneesh/eclipse-jdtls:latesta4579b163414
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

4,881
mautrix-signalalexanderbadel0.1.11 of 2See more

mautrix-signal alexanderbadel 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
signald/signald:0.18.20ffad7ccc2eb
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

2,099
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

5,898
zunivers-ninjaalexpressoVerified publisher1.31.21 of 2See more

zunivers-ninja alexpresso 1.31.2

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/neo4j:5.18.18f01f7bb053e
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7

Open the chart page →

1,165
katalogalpineworks0.1.21 of 5See more

katalog alpineworks 0.1.2

1 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-frontend:v1.0.734b76dcb1c10
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7

Open the chart page →

4,414
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5

Open the chart page →

20,233
amorphieamorphie0.1.23 of 18See more

amorphie amorphie 0.1.2

3 of the 18 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
camunda/zeebe:8.4.5ab5abc09e407
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
hazelcast/management-center:5.3.2f9d34300d330
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

28,212
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4

Open the chart page →

7,559
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5

Open the chart page →

20,233
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
krb5@1.16-2ubuntu0.4
1.16-2ubuntu0.4+esm5

Open the chart page →

11,579
games-on-whalesangelnu2.0.03 of 7See more

games-on-whales angelnu 2.0.0

3 of the 7 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

42,345
ddosifyanteonVerified publisher1.7.53 of 13See more

ddosify anteon 1.7.5

3 of the 13 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
ddosify/selfhosted_hammermanager:1.2.471b8768f49bc
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

25,720
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
krb5@1.18.2-31.el8_10
0:1.18.2-32.el8_10

Open the chart page →

2,454
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,231
apimap-developerapimapOfficialVerified publisher1.4.11 of 1See more

apimap-developer apimap 1.4.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
apimap/developer:v1.3.1406d3858e20c
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,353
apimap-portalapimapOfficialVerified publisher2.4.01 of 1See more

apimap-portal apimap 2.4.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
apimap/portal:v2.4.0041a4790c65c
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,396
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6

Open the chart page →

2,947
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

6,227
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
library/mongo:5.0.6-focal8e70544b6c76
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

19,784
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
krb5@1.18.2-14.el8
0:1.18.2-16.el8_6.4
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
krb5@1.18.2-14.el8
0:1.18.2-16.el8_6.4

Open the chart page →

12,520
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/postgres:14.32d1e636f0778
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

3,166
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
library/rabbitmq:3.12.1-managementf020c06da226
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7

Open the chart page →

15,707
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
library/rabbitmq:3.12.1-managementf020c06da226
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

17,110
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
krb5@1.18.2-26.el8_9
0:1.18.2-32.el8_10

Open the chart page →

2,404
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
krb5@1.18.2-22.el8_7
0:1.18.2-32.el8_10

Open the chart page →

4,043
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
krb5@1.18.2-26.el8_9
0:1.18.2-32.el8_10

Open the chart page →

2,568
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

3,310
cloud-portalappuio0.4.11 of 1See more

cloud-portal appuio 0.4.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

1,286
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
krb5@1.20.1-2
1.20.1-2+deb12u4

Open the chart page →

4,899
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
krb5@1.18.2-22.el8_7
0:1.18.2-32.el8_10

Open the chart page →

2,902
appwriteappwrite-helmVerified publisher1.3.23 of 8See more

appwrite appwrite-helm 1.3.2

3 of the 8 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:10.6.12-debian-11-r1315edb5643b73
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
bitnamilegacy/redis:7.0.10-debian-11-r059293f5206b7
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
kubegems/bitnami-shell:12-debian-12-r24e42e3aaacdd3
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

9,847
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
krb5@1.20.1-6ubuntu2.5
1.20.1-6ubuntu2.6

Open the chart page →

7,338
arlas-aiasarlas-stackVerified publisher28.8.07 of 22See more

arlas-aias arlas-stack 28.8.0

7 of the 22 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4

Open the chart page →

40,411

Container images carrying it

1,691 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
krb5@1.20.1-6ubuntu2.1
1.20.1-6ubuntu2.6
1
kafkakraft/kafka-connect:3.7.0062d697db7e5
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
kafkakraft/kafka-controller:3.7.0f261ad288fce
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
kafkakraft/kafkakraft:3.7.02e4b593b878b
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
kfirfer/phppgadmin:7.13.0-22efb4a5d74a3
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
knspar/phronetis-operator:0.1.60c4f0543ee58
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
kobotoolbox/kobocat:2.022.24ab15679454415
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
kong/httpbin:latesta6ac46531193
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
1
kporwit/vinyl_lib_app:v0.1.1217de0302218
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
krontechnology/aapm-agent:1.1.07feef7d2ab42
krb5@1.17-6ubuntu4.2
1.17-6ubuntu4.11
1
kserve/models-web-app:v0.13.073486345a602
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kubebb/hello-world:0.1.0b746824819f3
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
kubeflow/model-registry:v0.2.95783f6db428f
krb5@1.18.2-29.el8_10
0:1.18.2-32.el8_10
1
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kubegems/bitnami-shell:12-debian-12-r24e42e3aaacdd3
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
kubegems/chatgpt-api:latestf3c492a938ad
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
kubegems/mysql:8.0.33-debian-11-r019cb195b9a50
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
1
kuberay/operator:v1.0.04e6ac8a3a2c4
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
1
kusionstack/kusion:v0.14.0126c8f0b0976
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
1
kuzwolka/aws9:main1ad759b961b1
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kuzwolka/aws9:news3e8880fbbb96
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kuzwolka/aws9:blog4a7707410bf1
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kuzwolka/aws9:shop84a9d9766345
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
laly9999/node-app:1dd0e503913e1
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
langgenius/dify-api:1.0.0066035f93856
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
langgenius/dify-api:0.6.11fca918260dd6
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
lavandadelpatio/filebot-bot:0.0.1-SNAPSHOTd2cba20aa4d8
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
lib42/deluge:20c4d1d326f95
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
lib42/jackett:latesta55596cda383
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
library/cassandra:3.11.10b095ff3248c6
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
library/couchdb:3.4.22817ad50b5c5
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
library/elasticsearch:8.17.32cc40b15dff8
krb5@1.17-6ubuntu4.9
1.17-6ubuntu4.11
1
library/elasticsearch:8.15.0310b9fc03b06
krb5@1.17-6ubuntu4.6
1.17-6ubuntu4.11
1
library/elasticsearch:7.17.0332c6d416808
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
library/elasticsearch:7.17.1588c2ec10c7f2
krb5@1.17-6ubuntu4.4
1.17-6ubuntu4.11
1
library/elasticsearch:7.17.8fdc73b3249c1
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
library/flink:1.14.6-scala_2.122461f02672b3
krb5@1.19.2-2
1.19.2-2ubuntu0.7
1
library/ghost:4.37.0767230c0f263
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
library/haproxy:2.3078319f4e37b
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
library/haproxy:2.9.6fc5748ff7c72
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
library/httpd:2.4.631ae8051591a5
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
library/httpd:2.4.54ee2117e77c35
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
library/kibana:7.17.150172f1c538e7
krb5@1.17-6ubuntu4.4
1.17-6ubuntu4.11
1
library/kibana:8.18.004c0fc150f3a
krb5@1.17-6ubuntu4.9
1.17-6ubuntu4.11
1
library/kibana:7.17.8c5781ba340ef
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.