CVE-2025-46394
LowAdvisory
Published 23 Apr 2025In the index since 5 Sept 2026
- Severity
- Low
- worst across findings
- CVSS
- 3.3
- base score, highest
- EPSS
- 0.002
- 7th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 862
- of 17,787 indexed, latest versions
- Container images
- 907
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 862 of 17,787 indexed charts deploy, on 907 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| busyboxapk | 1.36.1-r10, 1.36.1-r11, 1.36.1-r15, 1.36.1-r17+15 more | 1.36.1-r21, 1.36.1-r31, 1.37.0-r14, 1.37.0-r20+1 more | 882 |
| busyboxdeb | 1:1.21.0-1ubuntu1, 1:1.21.0-1ubuntu1.4, 1:1.30.1-4ubuntu6.4, 1:1.30.1-7ubuntu3+6 more | no fix listed | 25 |
- OSV records
- ALPINE-CVE-2025-46394CGA-35qx-p5pw-chp7DEBIAN-CVE-2025-46394UBUNTU-CVE-2025-46394
- Also known as
- CGA-jgxh-j72w-f3hw
Charts affected
862 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| gateway-control-planewallarmVerified publisher | 0.2.0 | 1 of 2See more | 1,455 |
| wallarm-node-nextwallarmVerified publisher | 0.5.3 | 1 of 2See more | 2,408 |
| athens-proxywenerme | 0.5.2 | 1 of 2See more | 4,984 |
| hazelcastwenerme | 5.10.3 | 1See more | — |
| wexa-studiowexa-studio | 1.2.0 | 2 of 15See more | 14,983 |
| kibanawiremindVerified publisher | 8.5.23 | 1 of 2See more | 6,285 |
| postgres-operatorwiremindVerified publisher | 1.14.0-wiremind0 | 1 of 1See more | 1,286 |
| registrywiremindVerified publisher | 0.1.1 | 1 of 1See more | 1,187 |
| silence-operatorwiremindVerified publisher | 0.0.8 | 1 of 1See more | 789 |
| xkopsxkops | 0.1.0 | 1 of 5See more | 13,677 |
| ygdrassil-monitoringygdrassilVerified publisher | 0.4.0 | 1 of 10See more | 9,381 |
| zerossl-cert-managerzerossl-cert-manager | 0.1.0 | 1 of 2See more | 570 |
Container images carrying it
907 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| anguda/ | c435285fc241 | busybox | no fix listed | 1 |
| apache/ | 8fbd1a66c5f2 | busybox | 1.36.1-r21 | 1 |
| apache/ | adf7260c2c5f | busybox | 1.36.1-r21 | 1 |
| apache/ | bff074a5d005 | busybox | 1.37.0-r20 | 1 |
| apache/ | fbc7d7c428e3 | busybox | 1.36.1-r31 | 1 |
| apache/ | 9a9d16e60894 | busybox | 1.37.0-r20 | 1 |
| apecloud/ | b3ae37840ace | busybox | 1.36.1-r31 | 1 |
| apecloud/ | 5832d1a9097a | busybox | 1.37.0-r14 | 1 |
| appwrite/ | aaa11ceab999 | busybox | 1.36.1-r31 | 1 |
| aquasec/ | 6e790e233872 | busybox | 1.36.1-r21 | 1 |
| aquasec/ | cfbbfee972e6 | busybox | 1.37.0-r14 | 1 |
| artifacthub/ | 2a746b289fcd | busybox | 1.36.1-r31 | 1 |
| artifacthub/ | 111918d8c399 | busybox | 1.36.1-r31 | 1 |
| artifacthub/ | 323d026e78c3 | busybox | 1.36.1-r31 | 1 |
| assistiot/ | a942dc14030a | busybox | 1.36.1-r21 | 1 |
| assistiot/ | 9bb46ea14e8e | busybox | 1.36.1-r21 | 1 |
| assistiot/ | e32b87786142 | busybox | 1.36.1-r21 | 1 |
| automatischio/ | 3bace7a12d5f | busybox | 1.37.0-r14 | 1 |
| b3log/ | 95c0d129bc19 | busybox | 1.37.0-r14 | 1 |
| b4bz/ | 4b44a4a9e329 | busybox | 1.36.1-r31 | 1 |
| b4bz/ | c367265313f9 | busybox | 1.37.0-r14 | 1 |
| behnambm/ | bd3ad88afff9 | busybox | 1.36.1-r31 | 1 |
| beopenit/ | d24c323fe7c3 | busybox | 1.36.1-r21 | 1 |
| beyzkaya/ | bf412d75c510 | busybox | 1.37.0-r20 | 1 |
| binwiederhier/ | 4a7d0f0adc6d | busybox | 1.36.1-r21 | 1 |
| blipai/ | 737d5d19a312 | busybox | 1.36.1-r21 | 1 |
| buddyspencer/ | 6b656f19b0c1 | busybox | 1.36.1-r31 | 1 |
| burganbank/ | 9259c34e4037 | busybox | 1.36.1-r31 | 1 |
| byrnedo/ | 7f0599d553e2 | busybox | 1.37.0-r20 | 1 |
| caarlos0/ | d11dec138900 | busybox | 1.36.1-r21 | 1 |
| camunda/ | bcc5bb0542df | busybox | 1.37.0-r20 | 1 |
| carlosmz87/ | 79f4b528f42a | busybox | 1.36.1-r31 | 1 |
| casbin/ | 770ad9ec3190 | busybox | 1.36.1-r31 | 1 |
| censedata/ | ebfffb9dd4c0 | busybox | 1.37.0-r14 | 1 |
| cesanta/ | 98e0307e0d2d | busybox | 1.37.0-r20 | 1 |
| chandanteekinavar/ | 6de5bd44a325 | busybox | 1.37.0-r14 | 1 |
| chatwoot/ | 67ebc751c171 | busybox | 1.37.0-r14 | 1 |
| chetangautamm/ | b4b94155ff5a | busybox | no fix listed | 1 |
| chibisafe/ | 836467a50792 | busybox | 1.37.0-r20 | 1 |
| chibisafe/ | 3da4fcbc1a18 | busybox | 1.37.0-r20 | 1 |
| chrislusf/ | 634b094b2183 | busybox | 1.36.1-r21 | 1 |
| christianhuth/ | c07f414a3e4b | busybox | 1.37.0-r14 | 1 |
| ciuse99/ | d72768245ef5 | busybox | 1.37.0-r14 | 1 |
| clickhouse/ | 01b81d1432c4 | busybox | no fix listed | 1 |
| clickhouse/ | 810861a2e2d0 | busybox | no fix listed | 1 |
| clickhouse/ | 92098d3b31dd | busybox | no fix listed | 1 |
| clickhouse/ | cd450891db46 | busybox | 1.37.0-r14 | 1 |
| clickhouse/ | e019438e1e05 | busybox | no fix listed | 1 |
| clowder/ | fe97882672ca | busybox | 1.37.0-r20 | 1 |
| clsen2024/ | 1156cd87c8fb | busybox | 1.36.1-r31 | 1 |