StackRadar

CVE-2025-47913

High

Advisory

Published 13 Nov 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,023
of 17,790 indexed, latest versions
Container images
2,311
deployed by those charts
Fix available
8 of 8
affected packages

Red Hat Security Advisory: container-tools:rhel8 security update

Carried by container images the latest versions of 2,023 of 17,790 indexed charts deploy, on 2,311 images.

Affected packageAffected versionsFixed inImages
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-82.module+el8.10.0+23863+d7fda2d71
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+23863+d7fda2d71
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+23863+d7fda2d71
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+23863+d7fda2d71
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc4:1.2.9-2.module+el8.10.0+23863+d7fda2d71
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.5-5.module+el8.10.0+23863+d7fda2d71
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+23863+d7fda2d71
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+144 more0.43.02,311
OSV records
RHSA-2026:0753GO-2025-4116
Also known as
GHSA-56w8-48fp-6mgv, RHSA-2026:16701

Charts affected

2,023 by stars
ChartLatestAffected imagesRadar Score
kubestellar-uikubestellaruiVerified publisher0.1.11 of 4See more

kubestellar-ui kubestellarui 0.1.1

1 of the 4 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
mavrick1/kubestellar-b:latest45ca0429a1d4
golang.org/x/crypto@v0.5.0
0.43.0

Open the chart page →

4,763
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.46 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

6 of the 9 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
golang.org/x/crypto@v0.29.0
0.43.0
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
golang.org/x/crypto@v0.31.0
0.43.0
ghcr.io/kubiyabot/kubiya-operator:runner_v26bf945565865
golang.org/x/crypto@v0.26.0
0.43.0
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
golang.org/x/crypto@v0.40.0
0.43.0
ghcr.io/kubiyabot/workflow-engine:v1.46.2560a16a56d4e
golang.org/x/crypto@v0.37.0
0.43.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
golang.org/x/crypto@v0.28.0
0.43.0

Open the chart page →

20,299
lethe-stackkuossOfficialVerified publisher0.2.32 of 3See more

lethe-stack kuoss 0.2.3

2 of the 3 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/kuoss/eventrouter:v0.4.1300b48beff3ae
golang.org/x/crypto@v0.36.0
0.43.0
ghcr.io/kuoss/lethe:v0.3.1c59f082ba8b2
golang.org/x/crypto@v0.39.0
0.43.0

Open the chart page →

1,761
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
golang.org/x/crypto@v0.29.0
0.43.0

Open the chart page →

6,879
operatingkusionstackVerified publisher0.5.11 of 1See more

operating kusionstack 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
kusionstack/operating:v0.5.0c28bd96b986b
golang.org/x/crypto@v0.14.0
0.43.0

Open the chart page →

1,881
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/crypto@v0.35.0
0.43.0

Open the chart page →

1,242
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.43.0

Open the chart page →

16,537
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
conduction/kvk-php:dev8f177f9f8a7b
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.43.0

Open the chart page →

8,534
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.43.0

Open the chart page →

26,371
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
golang.org/x/crypto@v0.37.0
0.43.0

Open the chart page →

2,113
lambdapinglambdaping1.0.41 of 1See more

lambdaping lambdaping 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
udhos/lambdaping:1.0.46bd2cf2ac732
golang.org/x/crypto@v0.31.0
0.43.0

Open the chart page →

1,330
cachelavaOfficialVerified publisher1.1.11 of 1See more

cache lava 1.1.1

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/lavanet/lava/lavap:v2.5.089028adefcff
golang.org/x/crypto@v0.21.0
0.43.0

Open the chart page →

1,378
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
golang.org/x/crypto@v0.38.0
0.43.0

Open the chart page →

32,893
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.43.0
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.43.0

Open the chart page →

5,406
prometheuslectures-k8sinfra15.8.54 of 6See more

prometheus lectures-k8sinfra 15.8.5

4 of the 6 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.43.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.43.0
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.43.0
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
golang.org/x/crypto@v0.0.0-20220511200225-c6db032c6c88
0.43.0

Open the chart page →

9,092
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/crypto@v0.0.0-20200406173513-056763e48d71
0.43.0

Open the chart page →

3,191
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/crypto@v0.36.0
0.43.0

Open the chart page →

4,434
prometheusleechistest11.6.03 of 6See more

prometheus leechistest 11.6.0

3 of the 6 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/crypto@v0.0.0-20190617133340-57b3e21c3d56
0.43.0
prom/prometheus:v2.19.0bfad037f95e5
golang.org/x/crypto@v0.0.0-20200422194213-44a606286825
0.43.0
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.43.0

Open the chart page →

8,484
kube-benchlemontechVerified publisher0.1.01 of 1See more

kube-bench lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.9c329d73fea58
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0

Open the chart page →

1,632
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.43.0

Open the chart page →

4,271
minioleprechaun-charts0.1.61 of 1See more

minio leprechaun-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2025-01-20T14-49-07Z-cpuv114b7076ca85a
golang.org/x/crypto@v0.32.0
0.43.0

Open the chart page →

1,312
adguard-homelib42Verified publisher2.0.01 of 1See more

adguard-home lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.65d765078d2140
golang.org/x/crypto@v0.41.0
0.43.0

Open the chart page →

1,060
kltlifecycle-toolkitOfficialVerified publisher0.2.62 of 4See more

klt lifecycle-toolkit 0.2.6

2 of the 4 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/keptn/metrics-operator:v0.8.2acf22310e9dd
golang.org/x/crypto@v0.12.0
0.43.0
ghcr.io/keptn/scheduler:v0.8.20f7d277bb2b2
golang.org/x/crypto@v0.12.0
0.43.0

Open the chart page →

4,659
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.43.0

Open the chart page →

4,456
op-scim-bridgelifen1.0.31 of 2See more

op-scim-bridge lifen 1.0.3

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
golang.org/x/crypto@v0.0.0-20220131195533-30dcbda58838
0.43.0

Open the chart page →

2,777
op-scim-bridgelifen-chartsVerified publisher1.0.31 of 2See more

op-scim-bridge lifen-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
golang.org/x/crypto@v0.0.0-20220131195533-30dcbda58838
0.43.0

Open the chart page →

2,777
lightsteplightstep-microsat2.0.211 of 1See more

lightstep lightstep-microsat 2.0.21

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lightstep/microsatellite:2024-01-22_17-52-59Zc800e05e1eff
golang.org/x/crypto@v0.18.0
0.43.0

Open the chart page →

1,116
linkerd-preview-vizlinkerd-buoyantVerified publisher25.4.32 of 5See more

linkerd-preview-viz linkerd-buoyant 25.4.3

2 of the 5 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/buoyantio/prometheus:v2.55.12659f4c2ebb7
golang.org/x/crypto@v0.26.0
0.43.0
ghcr.io/buoyantio/web:preview-25.4.33ee1b62aa111
golang.org/x/crypto@v0.37.0
0.43.0

Open the chart page →

3,420
linkerd-dashboardlinkerd-dashboardOfficial0.11.11 of 2See more

linkerd-dashboard linkerd-dashboard 0.11.1

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/buoyantio/prometheus:v3.3.1e2b8aa62b648
golang.org/x/crypto@v0.35.0
0.43.0

Open the chart page →

1,037
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
golang.org/x/crypto@v0.17.0
0.43.0

Open the chart page →

10,773
livekit-recorderlivekit-server0.3.131 of 1See more

livekit-recorder livekit-server 0.3.13

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
livekit/livekit-recorder:v0.3.13ecf1409c75e0
golang.org/x/crypto@v0.0.0-20210314154223-e6e6c4f2bb5b
0.43.0

Open the chart page →

2,129
livekit-serverlivekit-server1.9.01 of 1See more

livekit-server livekit-server 1.9.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.9.03602a85840d5
golang.org/x/crypto@v0.38.0
0.43.0

Open the chart page →

1,553
llmarinerllmariner1.53.112 of 21See more

llmariner llmariner 1.53.1

12 of the 21 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/api-usage-cleaner:1.16.0d47f43484055
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/api-usage-server:1.16.08f9c32b866b0
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/cluster-manager-server:1.8.0364b3ff0fcb7
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-server:0.10.22d28f9e3eab4
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/database-creator:1.17.097065ced2942
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/file-manager-server:1.11.0301216788e93
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/model-manager-server:1.27.0c057dcdd9ef3
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/rbac-server:1.19.1df1adeb86679
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/session-manager-server:1.9.0f24ecd37fbaa
golang.org/x/crypto@v0.36.0
0.43.0
public.ecr.aws/cloudnatix/llmariner/user-manager-server:1.27.1628a14449241
golang.org/x/crypto@v0.36.0
0.43.0

Open the chart page →

12,034
llm-dllm-dVerified publisher1.0.231 of 2See more

llm-d llm-d 1.0.23

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
golang.org/x/crypto@v0.38.0
0.43.0

Open the chart page →

2,524
home-assistantlmatfyVerified publisher0.1.381 of 1See more

home-assistant lmatfy 0.1.38

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2026.75a531753cea9
golang.org/x/crypto@v0.26.0
0.43.0

Open the chart page →

2,450
otlp-gatewayloafoe0.0.21 of 2See more

otlp-gateway loafoe 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
golang.org/x/crypto@v0.25.0
0.43.0

Open the chart page →

2,155
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.43.0

Open the chart page →

4,904
solgateloafoe0.0.121 of 1See more

solgate loafoe 0.0.12

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
golang.org/x/crypto@v0.12.0
0.43.0

Open the chart page →

2,101
tempo-distributedloafoe1.20.11 of 2See more

tempo-distributed loafoe 1.20.1

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
grafana/tempo:2.6.0f55a8a1937ff
golang.org/x/crypto@v0.25.0
0.43.0

Open the chart page →

2,020
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-auth-go:latest6597b26959d2
golang.org/x/crypto@v0.9.0
0.43.0

Open the chart page →

5,905
ocatiecataloguslocatiecatalogus1.0.01 of 3See more

ocatiecatalogus locatiecatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.43.0

Open the chart page →

7,510
locust-pluginslocust-pluginsVerified publisher0.0.42 of 3See more

locust-plugins locust-plugins 0.0.4

2 of the 3 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
sky5367/locust-plugins-grafana:latestd51bf68d4b26
golang.org/x/crypto@v0.21.0
0.43.0
sky5367/locust-plugins-timescale:latestd3150f201471
golang.org/x/crypto@v0.20.0
0.43.0

Open the chart page →

7,516
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
golang.org/x/crypto@v0.38.0
0.43.0

Open the chart page →

32,893
central-hostpath-mapperloftVerified publisher0.2.91 of 1See more

central-hostpath-mapper loft 0.2.9

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/central-hostpath-mapper:0.2.9fa6dba122171
golang.org/x/crypto@v0.24.0
0.43.0

Open the chart page →

917
devpod-proloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

devpod-pro loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/crypto@v0.14.0
0.43.0

Open the chart page →

3,225
devspace-cloudloftVerified publisher0.3.31 of 8See more

devspace-cloud loft 0.3.3

1 of the 8 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
devspacecloud/manager:0.3.349c397413f7b
golang.org/x/crypto@v0.0.0-20200128174031-69ecbb4d6d5d
0.43.0

Open the chart page →

9,880
kioskloftVerified publisher0.2.111 of 1See more

kiosk loft 0.2.11

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
kiosksh/kiosk:0.2.11501725ba2025
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.43.0

Open the chart page →

3,086
loft-agentloftVerified publisher3.2.41 of 1See more

loft-agent loft 3.2.4

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/agent:3.2.45c109914ff73
golang.org/x/crypto@v0.5.0
0.43.0

Open the chart page →

2,444
loft-direct-cluster-endpointloftVerified publisher1.14.01 of 1See more

loft-direct-cluster-endpoint loft 1.14.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
loftsh/directclusterendpoint:1.14.0310cc7d690f5
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.43.0

Open the chart page →

3,112
vcluster-control-planeloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

vcluster-control-plane loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
golang.org/x/crypto@v0.14.0
0.43.0

Open the chart page →

3,225

Container images carrying it

2,311 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
aquasec/kube-bench:v0.6.9c329d73fea58
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0
1
aquasec/postee:2.12.0-amd640795cba777e7
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.43.0
1
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.43.0
1
aquasec/tracee:0.24.1cfbbfee972e6
golang.org/x/crypto@v0.40.0
0.43.0
1
aquasec/trivy:0.43.1944a04445179
golang.org/x/crypto@v0.10.0
0.43.0
1
aquasec/trivy:0.32.0973d0df16189
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.43.0
1
arconixforge/mongodb-secure-backup:v1.1c08d7c438966
golang.org/x/crypto@v0.32.0
0.43.0
1
aristidetm/basic-notebook:3.6.5469dbc951224
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0
1
artifacthub/db-migrator:v1.23.028c13565ac5c
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.43.0
1
artifacthub/db-migrator:v1.19.02a746b289fcd
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.43.0
1
artifacthub/hub:v1.19.0111918d8c399
golang.org/x/crypto@v0.24.0
0.43.0
1
artifacthub/scanner:v1.19.0323d026e78c3
golang.org/x/crypto@v0.24.0
0.43.0
1
artifacthub/tracker:v1.23.05368d21a6e5c
golang.org/x/crypto@v0.42.0
0.43.0
1
artifacthub/tracker:v1.19.06596c8c4d955
golang.org/x/crypto@v0.24.0
0.43.0
1
arunvelsriram/utils:latest655ad18fd8d6
golang.org/x/crypto@v0.22.0
0.43.0
1
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.43.0
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.43.0
1
astarte/astarte-kubernetes-operator:26.5.1e3ff1b3c0c98
golang.org/x/crypto@v0.28.0
0.43.0
1
avaprotocol/ap-avs:1.2.0c430ea5c37d6
golang.org/x/crypto@v0.22.0
0.43.0
1
b3log/siyuan:v3.1.2595c0d129bc19
golang.org/x/crypto@v0.36.0
0.43.0
1
baserow/baserow:1.30.1df0c42eb67e8
golang.org/x/crypto@v0.14.0
0.43.0
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.43.0
1
beopenit/door-agent:v3.0.5d24c323fe7c3
golang.org/x/crypto@v0.36.0
0.43.0
1
beopenit/door-helm:v3.0.1b4d9f9bee224
golang.org/x/crypto@v0.13.0
0.43.0
1
beopenit/onboarding-operator-kubernetes:v3.0.275a48144e682
golang.org/x/crypto@v0.0.0-20220314234659-1baeb1ce4c0b
0.43.0
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0
1
bicarus/mx-notifier:1.1.8bed688d16762
golang.org/x/crypto@v0.3.0
0.43.0
1
bicarus/wg-access-server:v0.8.206cab48e9334
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0
1
binwiederhier/ntfy:v2.11.04a7d0f0adc6d
golang.org/x/crypto@v0.23.0
0.43.0
1
binwiederhier/ntfy:v2.6.283e2e43d9956
golang.org/x/crypto@v0.10.0
0.43.0
1
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
golang.org/x/crypto@v0.41.0
0.43.0
1
bitnamilegacy/git:latest4b08d0c5af8d
golang.org/x/crypto@v0.36.0
0.43.0
1
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
golang.org/x/crypto@v0.27.0
0.43.0
1
bitnamilegacy/kafka-exporter-archived:1.3.2e527fbf75dce
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.43.0
1
bitnamilegacy/kube-state-metrics:204a3044b384b
golang.org/x/crypto@v0.38.0
0.43.0
1
bitnamilegacy/minio:2023.12.230b60b6565ab2
golang.org/x/crypto@v0.17.0
0.43.0
1
bitnamilegacy/minio:2022.12.12-debian-11-r90f7c8ac484ac
golang.org/x/crypto@v0.3.0
0.43.0
1
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
golang.org/x/crypto@v0.24.0
0.43.0
1
bitnamilegacy/minio:2023.12.23-debian-11-r25bb0aa825d16
golang.org/x/crypto@v0.17.0
0.43.0
1
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
golang.org/x/crypto@v0.40.0
0.43.0
1
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
golang.org/x/crypto@v0.37.0
0.43.0
1
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
golang.org/x/crypto@v0.23.0
0.43.0
1
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
golang.org/x/crypto@v0.36.0
0.43.0
1
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
golang.org/x/crypto@v0.27.0
0.43.0
1
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
golang.org/x/crypto@v0.27.0
0.43.0
1
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
golang.org/x/crypto@v0.37.0
0.43.0
1
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
golang.org/x/crypto@v0.25.0
0.43.0
1
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
golang.org/x/crypto@v0.38.0
0.43.0
1
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
golang.org/x/crypto@v0.14.0
0.43.0
1
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.43.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.