StackRadar

CVE-2025-3576

Medium

Advisory

Published 15 Apr 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,559
of 17,790 indexed, latest versions
Container images
1,691
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: krb5 security update

Carried by container images the latest versions of 1,559 of 17,790 indexed charts deploy, on 1,691 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+40 more1.12+dfsg-2ubuntu5.4+esm7, 1.13.2+dfsg-5ubuntu2.2+esm7, 1.16-2ubuntu0.4+esm5, 1.17-6ubuntu4.11+4 more1,447
krb5rpm1.16.1-22.el8, 1.17-9.el8, 1.17-18.el8, 1.17-19.el8_2+25 more0:1.17-19.el8_2.3, 0:1.18.2-9.el8_4.3, 0:1.18.2-16.el8_6.4, 0:1.18.2-26.el8_8.5+5 more244
OSV records
DEBIAN-CVE-2025-3576RHSA-2025:13664RHSA-2025:13777RHSA-2025:15001RHSA-2025:15002RHSA-2025:15003RHSA-2025:15004RHSA-2025:8411RHSA-2025:9430RLSA-2025:8411RLSA-2025:9430UBUNTU-CVE-2025-3576DLA-4195-1SUSE-SU-2025:3699-1
Also known as
USN-7542-1

Charts affected

1,559 by stars
ChartLatestAffected imagesRadar Score
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

2,763
voice-biometricslumenvox2.0.112 of 26See more

voice-biometrics lumenvox 2.0.1

12 of the 26 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-assure-identity:2.0.0147854a3c916
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-audit:2.0.079428add7f38
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-binary-storage:2.0.053decadc102d
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-deployment:2.0.0ea8110886d38
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-management-api:2.0.0b9a23345eabd
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
lumenvox/cloud-voice-verifier:2.0.014170ad34903
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11

Open the chart page →

71,216
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

5,741
magentomagento3.2.33 of 12See more

magento magento 3.2.3

3 of the 12 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
krb5@1.20.1-150600.11.11.2
1.20.1-150600.11.14.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
krb5@1.20.1-150600.11.11.2
1.20.1-150600.11.14.1
longhornio/longhorn-ui:v1.10.0e60f36161511
krb5@1.20.1-150600.11.11.2
1.20.1-150600.11.14.1

Open the chart page →

13,582
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.4+esm5
torrespro/mca-worker:2.0.06d3bd305a1ba
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

19,192
pulsemezmo0.3.11 of 1See more

pulse mezmo 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
mezmohq/vector:1.17.3ad5794b112af
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

689
nginx-staticmidokura-communityVerified publisher0.1.61 of 1See more

nginx-static midokura-community 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/nginx:1.23.03536d368b898
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

1,126
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
krb5@1.18.2-5.el8
0:1.18.2-32.el8_10

Open the chart page →

6,915
mlflow-controllermlflow-deployment-controller0.1.81 of 2See more

mlflow-controller mlflow-deployment-controller 0.1.8

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
tachyongroup/mlflow-deployment-controller-ui:mlflow-controller-0.1.8f4f7fabe1037
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

8,957
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
buntha/mlflow:2.1.1154542cc3083
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

5,804
food-managermoreillonVerified publisher0.5.02 of 2See more

food-manager moreillon 0.5.0

2 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
moreillon/food-manager:lateste8fd856e593d
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4

Open the chart page →

13,763
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

3,729
clowder2ncsaVerified publisher1.9.77 of 12See more

clowder2 ncsa 1.9.7

7 of the 12 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
bitnamilegacy/minio:2023.12.230b60b6565ab2
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
bitnamilegacy/postgresql:15.5.06887635cc793
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

37,441
marge-botnetpositiveVerified publisher1.1.01 of 1See more

marge-bot netpositive 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.12.1a96c10b61a59
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

1,253
glowrootnovum-rgi-charts1.0.101 of 2See more

glowroot novum-rgi-charts 1.0.10

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

2,308
Helm-nginxnrr-test-app0.2.01 of 1See more

Helm-nginx nrr-test-app 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
nrrrus/nginx-test:latest5f55cd4ef557
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7

Open the chart page →

915
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
krb5@1.21.1-6.el9
0:1.21.1-8.el9_6

Open the chart page →

6,110
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

5,051
open5gs-ausfopen5gs-ausfVerified publisher2.3.11 of 1See more

open5gs-ausf open5gs-ausf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-bsfopen5gs-bsfVerified publisher2.3.11 of 1See more

open5gs-bsf open5gs-bsf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-hssopen5gs-hssVerified publisher2.3.01 of 2See more

open5gs-hss open5gs-hss 2.3.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-mmeopen5gs-mmeVerified publisher2.3.01 of 1See more

open5gs-mme open5gs-mme 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-nrfopen5gs-nrfVerified publisher2.3.11 of 1See more

open5gs-nrf open5gs-nrf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-nssfopen5gs-nssfVerified publisher2.3.11 of 1See more

open5gs-nssf open5gs-nssf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-pcfopen5gs-pcfVerified publisher2.3.11 of 1See more

open5gs-pcf open5gs-pcf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-pcrfopen5gs-pcrfVerified publisher2.3.01 of 2See more

open5gs-pcrf open5gs-pcrf 2.3.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-scpopen5gs-scpVerified publisher2.3.11 of 2See more

open5gs-scp open5gs-scp 2.3.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-sgwcopen5gs-sgwcVerified publisher2.3.01 of 1See more

open5gs-sgwc open5gs-sgwc 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-sgwuopen5gs-sgwuVerified publisher2.3.01 of 1See more

open5gs-sgwu open5gs-sgwu 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-smfopen5gs-smfVerified publisher2.3.11 of 1See more

open5gs-smf open5gs-smf 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-udmopen5gs-udmVerified publisher2.3.11 of 1See more

open5gs-udm open5gs-udm 2.3.1

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-udropen5gs-udrVerified publisher2.3.11 of 2See more

open5gs-udr open5gs-udr 2.3.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

216
open5gs-upfopen5gs-upfVerified publisher2.3.21 of 1See more

open5gs-upf open5gs-upf 2.3.2

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
krb5@1.18.3-6+deb11u6
1.18.3-6+deb11u7

Open the chart page →

134
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7

Open the chart page →

5,300
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
krb5@1.20.1-2
1.20.1-2+deb12u4
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

14,862
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
krb5@1.19.2-2
1.19.2-2ubuntu0.7

Open the chart page →

4,205
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
krb5@1.21.1-1.el9
0:1.21.1-8.el9_6

Open the chart page →

2,097
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4

Open the chart page →

6,899
open-notificatiesopen-zaak0.7.01 of 4See more

open-notificaties open-zaak 0.7.0

1 of the 4 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
openzaak/open-notificaties:1.3.02e65313b9b10
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

2,850
opikopikOfficialVerified publisher2.2.641See more

opik opik 2.2.64

1 container image this version deploys carries CVE-2025-3576.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.2.0-v10e44b2b49d059
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7

Open the chart page →

opta-agentopta-agentVerified publisher0.1.31 of 1See more

opta-agent opta-agent 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
runx1/opta-agent:latest0ca3867d3200
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

1,543
ovh-snapshoterovh-snapshoterOfficialVerified publisher0.4.101 of 1See more

ovh-snapshoter ovh-snapshoter 0.4.10

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
ghcr.io/hoverkraft-tech/ovh-snapshoter/app:0.4.1010d271f08ab3
krb5@1.18.3-6+deb11u5
1.18.3-6+deb11u7

Open the chart page →

761
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
krb5@1.18.2-14.el8
0:1.18.2-32.el8_10
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
krb5@1.21.1-1.el9
0:1.21.1-2.el9_4.2

Open the chart page →

7,833
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
krb5@1.19.2-2
1.19.2-2ubuntu0.7

Open the chart page →

7,616
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
library/elasticsearch:7.17.0332c6d416808
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

31,949
postgres-backuppostgres-backup0.3.01 of 2See more

postgres-backup postgres-backup 0.3.0

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7

Open the chart page →

5,462
pritunl-slack-apppritunl-slack-appVerified publisher0.1.71 of 1See more

pritunl-slack-app pritunl-slack-app 0.1.7

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7

Open the chart page →

2,871
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4

Open the chart page →

3,022
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
krb5@1.19.2-2
1.19.2-2ubuntu0.7

Open the chart page →

6,835
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-3576.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7

Open the chart page →

7,466

Container images carrying it

1,691 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.7
1
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
krb5@1.20.1-2
1.20.1-2+deb12u4
1
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u7
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u4
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
krb5@1.16-2ubuntu0.2
1.16-2ubuntu0.4+esm5
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/zcube/bitnami-compat/redis:7.0-debian-11-r55118a403046f7
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
krb5@1.16-2ubuntu0.4
1.16-2ubuntu0.4+esm5
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
krb5@1.16-2ubuntu0.4
1.16-2ubuntu0.4+esm5
1
mcr.microsoft.com/oss/azure/aad-pod-identity/nmi:v1.8.1777788bf38938
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
krb5@1.19.2-2ubuntu0.6
1.19.2-2ubuntu0.7
1
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
krb5@1.18.3-6+deb11u3
1.18.3-6+deb11u7
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u4
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
krb5@1.18.2-30.el8_10
0:1.18.2-32.el8_10
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
krb5@1.16-2ubuntu0.2
1.16-2ubuntu0.4+esm5
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.11
1
public.ecr.aws/t0u0d5o5/ecr_authenticator:latest077e4e57e41c
krb5@1.18.3-6+deb11u4
1.18.3-6+deb11u7
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u4
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
krb5@1.21.1-2.el9_4
0:1.21.1-2.el9_4.2
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
krb5@1.21.1-4.el9_5
0:1.21.1-8.el9_6
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
quay.io/aerokube/keygen:1.0.1578934444f04
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
krb5@1.21.1-2.el9_4
0:1.21.1-2.el9_4.2
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
krb5@1.18.2-26.el8_9
0:1.18.2-32.el8_10
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
krb5@1.18.2-26.el8_9
0:1.18.2-32.el8_10
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
krb5@1.19.2-2
1.19.2-2ubuntu0.7
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
krb5@1.20.1-6ubuntu2.5
1.20.1-6ubuntu2.6
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.7
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
krb5@1.18.2-8.el8
0:1.18.2-9.el8_4.3
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u7
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.7
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
krb5@1.18.2-25.el8_8
0:1.18.2-26.el8_8.5
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.