CVE-2025-46394
LowAdvisory
Published 23 Apr 2025In the index since 5 Sept 2026
- Severity
- Low
- worst across findings
- CVSS
- 3.3
- base score, highest
- EPSS
- 0.002
- 7th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 861
- of 17,790 indexed, latest versions
- Container images
- 907
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 861 of 17,790 indexed charts deploy, on 907 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| busyboxapk | 1.36.1-r10, 1.36.1-r11, 1.36.1-r15, 1.36.1-r17+15 more | 1.36.1-r21, 1.36.1-r31, 1.37.0-r14, 1.37.0-r20+1 more | 882 |
| busyboxdeb | 1:1.21.0-1ubuntu1, 1:1.21.0-1ubuntu1.4, 1:1.30.1-4ubuntu6.4, 1:1.30.1-7ubuntu3+6 more | no fix listed | 25 |
- OSV records
- ALPINE-CVE-2025-46394CGA-35qx-p5pw-chp7DEBIAN-CVE-2025-46394UBUNTU-CVE-2025-46394
- Also known as
- CGA-jgxh-j72w-f3hw
Charts affected
861 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| wallarm-node-nextwallarmVerified publisher | 0.5.3 | 1 of 2See more | 2,408 |
| athens-proxywenerme | 0.5.2 | 1 of 2See more | 4,985 |
| hazelcastwenerme | 5.10.3 | 1 of 2See more | 2,623 |
| wexa-studiowexa-studio | 1.2.0 | 2 of 15See more | 14,618 |
| kibanawiremindVerified publisher | 8.5.23 | 1 of 2See more | 6,323 |
| postgres-operatorwiremindVerified publisher | 1.14.0-wiremind0 | 1 of 1See more | 1,286 |
| registrywiremindVerified publisher | 0.1.1 | 1 of 1See more | 1,187 |
| silence-operatorwiremindVerified publisher | 0.0.8 | 1 of 1See more | 789 |
| xkopsxkops | 0.1.0 | 1 of 5See more | 13,197 |
| ygdrassil-monitoringygdrassilVerified publisher | 0.4.0 | 1 of 10See more | 9,381 |
| zerossl-cert-managerzerossl-cert-manager | 0.1.0 | 1 of 2See more | 569 |
Container images carrying it
907 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.