StackRadar

CVE-2025-3576

Medium

Advisory

Published 15 Apr 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,559
of 17,790 indexed, latest versions
Container images
1,691
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: krb5 security update

Carried by container images the latest versions of 1,559 of 17,790 indexed charts deploy, on 1,691 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+40 more1.12+dfsg-2ubuntu5.4+esm7, 1.13.2+dfsg-5ubuntu2.2+esm7, 1.16-2ubuntu0.4+esm5, 1.17-6ubuntu4.11+4 more1,447
krb5rpm1.16.1-22.el8, 1.17-9.el8, 1.17-18.el8, 1.17-19.el8_2+25 more0:1.17-19.el8_2.3, 0:1.18.2-9.el8_4.3, 0:1.18.2-16.el8_6.4, 0:1.18.2-26.el8_8.5+5 more244
OSV records
DEBIAN-CVE-2025-3576RHSA-2025:13664RHSA-2025:13777RHSA-2025:15001RHSA-2025:15002RHSA-2025:15003RHSA-2025:15004RHSA-2025:8411RHSA-2025:9430RLSA-2025:8411RLSA-2025:9430UBUNTU-CVE-2025-3576DLA-4195-1SUSE-SU-2025:3699-1
Also known as
USN-7542-1

Charts affected

1,559 by stars
ChartLatestAffected imagesRadar Score
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

2,763
voice-biometricslumenvox2.0.112 of 26See more

voice-biometrics lumenvox 2.0.1

12 of the 26 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-assure-identity:2.0.0147854a3c916
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-audit:2.0.079428add7f38
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-binary-storage:2.0.053decadc102d
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-deployment:2.0.0ea8110886d38
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-management-api:2.0.0b9a23345eabd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-voice-verifier:2.0.014170ad34903
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

71,216
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

5,741
magentomagento3.2.33 of 12See more

magento magento 3.2.3

3 of the 12 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
krb5@1.20.1-150600.11.11.2
1.20.1-150600.11.14.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
krb5@1.20.1-150600.11.11.2
1.20.1-150600.11.14.1
longhornio/longhorn-ui:v1.10.0e60f36161511
krb5@1.20.1-150600.11.11.2
1.20.1-150600.11.14.1

Open the chart page →

13,582
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
torrespro/mca-worker:2.0.06d3bd305a1ba
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

19,192
pulsemezmo0.3.11 of 1See more

pulse mezmo 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
mezmohq/vector:1.17.3ad5794b112af
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

689
nginx-staticmidokura-communityVerified publisher0.1.61 of 1See more

nginx-static midokura-community 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/nginx:1.23.03536d368b898
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

1,126
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
krb5@1.18.2-5.el8
0:1.18.2-32.el8_10

Open the chart page →

6,915
mlflow-controllermlflow-deployment-controller0.1.81 of 2See more

mlflow-controller mlflow-deployment-controller 0.1.8

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
tachyongroup/mlflow-deployment-controller-ui:mlflow-controller-0.1.8f4f7fabe1037
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

8,957
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
buntha/mlflow:2.1.1154542cc3083
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

5,804
food-managermoreillonVerified publisher0.5.02 of 2See more

food-manager moreillon 0.5.0

2 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
moreillon/food-manager:lateste8fd856e593d
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4

Open the chart page →

13,763
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

3,729
clowder2ncsaVerified publisher1.9.77 of 12See more

clowder2 ncsa 1.9.7

7 of the 12 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
bitnamilegacy/minio:2023.12.230b60b6565ab2
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
bitnamilegacy/postgresql:15.5.06887635cc793
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

37,441
marge-botnetpositiveVerified publisher1.1.01 of 1See more

marge-bot netpositive 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.12.1a96c10b61a59
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

1,253
glowrootnovum-rgi-charts1.0.101 of 2See more

glowroot novum-rgi-charts 1.0.10

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

2,308
Helm-nginxnrr-test-app0.2.01 of 1See more

Helm-nginx nrr-test-app 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
nrrrus/nginx-test:latest5f55cd4ef557
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

915
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
krb5@1.21.1-6.el9
0:1.21.1-8.el9_6

Open the chart page →

6,110
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

5,051
open5gs-ausfopen5gs-ausfVerified publisher2.3.11 of 1See more

open5gs-ausf open5gs-ausf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-bsfopen5gs-bsfVerified publisher2.3.11 of 1See more

open5gs-bsf open5gs-bsf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-hssopen5gs-hssVerified publisher2.3.01 of 2See more

open5gs-hss open5gs-hss 2.3.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-mmeopen5gs-mmeVerified publisher2.3.01 of 1See more

open5gs-mme open5gs-mme 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-nrfopen5gs-nrfVerified publisher2.3.11 of 1See more

open5gs-nrf open5gs-nrf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-nssfopen5gs-nssfVerified publisher2.3.11 of 1See more

open5gs-nssf open5gs-nssf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-pcfopen5gs-pcfVerified publisher2.3.11 of 1See more

open5gs-pcf open5gs-pcf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-pcrfopen5gs-pcrfVerified publisher2.3.01 of 2See more

open5gs-pcrf open5gs-pcrf 2.3.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-scpopen5gs-scpVerified publisher2.3.11 of 2See more

open5gs-scp open5gs-scp 2.3.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-sgwcopen5gs-sgwcVerified publisher2.3.01 of 1See more

open5gs-sgwc open5gs-sgwc 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-sgwuopen5gs-sgwuVerified publisher2.3.01 of 1See more

open5gs-sgwu open5gs-sgwu 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-smfopen5gs-smfVerified publisher2.3.11 of 1See more

open5gs-smf open5gs-smf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-udmopen5gs-udmVerified publisher2.3.11 of 1See more

open5gs-udm open5gs-udm 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-udropen5gs-udrVerified publisher2.3.11 of 2See more

open5gs-udr open5gs-udr 2.3.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-upfopen5gs-upfVerified publisher2.3.21 of 1See more

open5gs-upf open5gs-upf 2.3.2

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7

Open the chart page →

5,300
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
krb5@1.20.1-2
1.20.1-2+deb12u4
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

14,862
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
krb5@1.19.2-2
1.19.2-2ubuntu0.7

Open the chart page →

4,205
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
krb5@1.21.1-1.el9
0:1.21.1-8.el9_6

Open the chart page →

2,097
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4

Open the chart page →

6,899
open-notificatiesopen-zaak0.7.01 of 4See more

open-notificaties open-zaak 0.7.0

1 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
openzaak/open-notificaties:1.3.02e65313b9b10
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

2,850
opikopikOfficialVerified publisher2.2.641See more

opik opik 2.2.64

1 container image this version deploys carries CVE-2025-3576.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.2.0-v10e44b2b49d059
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

opta-agentopta-agentVerified publisher0.1.31 of 1See more

opta-agent opta-agent 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
runx1/opta-agent:latest0ca3867d3200
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

1,543
ovh-snapshoterovh-snapshoterOfficialVerified publisher0.4.101 of 1See more

ovh-snapshoter ovh-snapshoter 0.4.10

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/hoverkraft-tech/ovh-snapshoter/app:0.4.1010d271f08ab3
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7

Open the chart page →

761
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
krb5@1.18.2-14.el8
0:1.18.2-32.el8_10
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
krb5@1.21.1-1.el9
0:1.21.1-2.el9_4.2

Open the chart page →

7,833
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
krb5@1.19.2-2
1.19.2-2ubuntu0.7

Open the chart page →

7,616
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
library/elasticsearch:7.17.0332c6d416808
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

31,949
postgres-backuppostgres-backup0.3.01 of 2See more

postgres-backup postgres-backup 0.3.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

5,462
pritunl-slack-apppritunl-slack-appVerified publisher0.1.71 of 1See more

pritunl-slack-app pritunl-slack-app 0.1.7

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,871
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

3,022
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
krb5@1.19.2-2
1.19.2-2ubuntu0.7

Open the chart page →

6,835
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

7,466

Container images carrying it

1,691 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
zbalogh/reservation-api-server:1.0.97c247e399a1f
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
zzorica/k8s-mgmt-pod:0.5.2640ca4de2922
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
krb5@1.20.1-6ubuntu2.2
1.20.1-6ubuntu2.6
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
1
gcr.io/getindata-images-public/mlflow:latest25d6975951f1
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2+esm7
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2+esm7
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2+esm7
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2+esm7
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
krb5@1.20.1-6ubuntu2
1.20.1-6ubuntu2.6
1
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
gcr.io/kubecost1/kubecost-modeling:v0.1.24a2259b098b13
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7
1
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/0xemma/reddark:main2a115e991894
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
krb5@1.21.1-6.el9
0:1.21.1-8.el9_6
1
ghcr.io/ajnart/homarr:0.16.0737ec361ed24
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
ghcr.io/ajnart/homarr:lateste103abadfb52
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
ghcr.io/alexmorbo/dell_idrac_fan_controller:v0.1.6-1d110504d551d
krb5@1.20.1-6ubuntu2.2
1.20.1-6ubuntu2.6
1
ghcr.io/alpineworks/katalog-frontend:v1.0.734b76dcb1c10
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
krb5@1.18.2-22.el8_7
0:1.18.2-32.el8_10
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
ghcr.io/blakeblackshear/frigate:0.14.122e3d0b486df
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7
1
ghcr.io/blakeblackshear/frigate:0.13.07a5244e4c8dc
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
1
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
krb5@1.17-6ubuntu4.2
1.17-6ubuntu4.11
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
ghcr.io/caninehq/canine:latesta058034ca006
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.