StackRadar

CVE-2025-41253

High

Advisory

Published 16 Oct 2025In the index since 8 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
9
of 17,781 indexed, latest versions
Container images
7
deployed by those charts
Fix available
None
affected package

Spring Cloud Gateway Server Webflux is vulnerable to Expression Language Injection

Carried by container images the latest versions of 9 of 17,781 indexed charts deploy, on 7 images.

Affected packageAffected versionsFixed inImages
spring-cloud-gateway-servermaven3.0.3, 3.1.0, 3.1.1, 3.1.2+3 moreno fix listed7
OSV records
GHSA-fwxx-wv44-7qfg

Charts affected

9 by stars
ChartLatestAffected imagesRadar Score
gatewayaccount-serviceVerified publisher0.4.21 of 1See more

gateway account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-cloud-gateway-server@4.0.6
no fix listed

Open the chart page →

2,853
scorpio-brokerfiware0.3.31 of 10See more

scorpio-broker fiware 0.3.3

1 of the 10 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-cloud-gateway-server@3.1.0
no fix listed

Open the chart page →

55,600
scorpiobrokerfiware0.1.21 of 10See more

scorpiobroker fiware 0.1.2

1 of the 10 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-cloud-gateway-server@3.1.0
no fix listed

Open the chart page →

55,600
prometheushuangchengwu-helm-chart0.1.01 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
apache/skywalking-ui:9.2.0295f1dc87d98
spring-cloud-gateway-server@3.1.2
no fix listed

Open the chart page →

16,401
skywalking-v1huangchengwu-helm-chart0.1.01 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
apache/skywalking-ui:8.9.180530f0308a5
spring-cloud-gateway-server@3.0.3
no fix listed

Open the chart page →

20,650
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
spring-cloud-gateway-server@3.1.1
no fix listed

Open the chart page →

11,738
fmtok8s-conference-chartsalaboy0.1.41 of 6See more

fmtok8s-conference-chart salaboy 0.1.4

1 of the 6 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
spring-cloud-gateway-server@3.1.3
no fix listed

Open the chart page →

16,101
fmtok8s-frontendsalaboy0.1.31 of 1See more

fmtok8s-frontend salaboy 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
spring-cloud-gateway-server@3.1.3
no fix listed

Open the chart page →

8,033
sn-consolestreamnative1.13.01 of 1See more

sn-console streamnative 1.13.0

1 of the 1 container images this version deploys carry CVE-2025-41253.

Container imageDigestPackageFixed in
streamnative/private-cloud-console:v2.3.27-all91e54375e154
spring-cloud-gateway-server@4.1.8
no fix listed

Open the chart page →

1,827

Container images carrying it

7 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-cloud-gateway-server@3.1.0
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
spring-cloud-gateway-server@3.1.3
no fix listed
2
apache/skywalking-ui:9.2.0295f1dc87d98
spring-cloud-gateway-server@3.1.2
no fix listed
1
apache/skywalking-ui:8.9.180530f0308a5
spring-cloud-gateway-server@3.0.3
no fix listed
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
spring-cloud-gateway-server@3.1.1
no fix listed
1
streamnative/private-cloud-console:v2.3.27-all91e54375e154
spring-cloud-gateway-server@4.1.8
no fix listed
1
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-cloud-gateway-server@4.0.6
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.