StackRadar

CVE-2025-47913

High

Advisory

Published 13 Nov 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,023
of 17,803 indexed, latest versions
Container images
2,313
deployed by those charts
Fix available
8 of 8
affected packages

Red Hat Security Advisory: container-tools:rhel8 security update

Carried by container images the latest versions of 2,023 of 17,803 indexed charts deploy, on 2,313 images.

Affected packageAffected versionsFixed inImages
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-82.module+el8.10.0+23863+d7fda2d71
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+23863+d7fda2d71
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+23863+d7fda2d71
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+23863+d7fda2d71
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc4:1.2.9-2.module+el8.10.0+23863+d7fda2d71
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.5-5.module+el8.10.0+23863+d7fda2d71
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+23863+d7fda2d71
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+144 more0.43.02,313
OSV records
RHSA-2026:0753GO-2025-4116
Also known as
GHSA-56w8-48fp-6mgv, RHSA-2026:16701

Charts affected

2,023 by stars
ChartLatestAffected imagesRadar Score
wireguardwireguard-bananas1.5.01 of 1See more

wireguard wireguard-bananas 1.5.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
place1/wg-access-server:v0.4.62b2f3ea80ed6
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.43.0

Open the chart page →

2,752
dex-k8s-authenticatorwiremindVerified publisher1.7.01 of 1See more

dex-k8s-authenticator wiremind 1.7.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.43.0

Open the chart page →

2,792
postgres-operatorwiremindVerified publisher1.14.0-wiremind01 of 1See more

postgres-operator wiremind 1.14.0-wiremind0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/zalando/postgres-operator:v1.14.04f40cfc2283b
golang.org/x/crypto@v0.31.0
0.43.0

Open the chart page →

1,431
prometheus-openstack-exporterwiremindVerified publisher0.5.01 of 1See more

prometheus-openstack-exporter wiremind 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/openstack-exporter/openstack-exporter:1.7.0e5146a7dd515
golang.org/x/crypto@v0.8.0
0.43.0

Open the chart page →

1,480
prometheus-safety-exporterwiremindVerified publisher0.6.01 of 2See more

prometheus-safety-exporter wiremind 0.6.0

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/json-exporter:v0.7.03a777171d39a
golang.org/x/crypto@v0.31.0
0.43.0

Open the chart page →

725
registrywiremindVerified publisher0.1.11 of 1See more

registry wiremind 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
golang.org/x/crypto@v0.36.0
0.43.0

Open the chart page →

1,357
kafka-connect-uiwitcom-gmbh0.5.01 of 2See more

kafka-connect-ui witcom-gmbh 0.5.0

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.43.0

Open the chart page →

2,513
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.43.0

Open the chart page →

2,623
commentopluspluswyrihaximusnetVerified publisher0.4.01 of 1See more

commentoplusplus wyrihaximusnet 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
caroga/commentoplusplus:v1.8.7f3233882b3bd
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.43.0

Open the chart page →

1,960
oauth2xdVerified publisher1.0.01 of 1See more

oauth2 xd 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lishimeng/hufu:v1.2.13d5752dac834
golang.org/x/crypto@v0.11.0
0.43.0

Open the chart page →

2,008
owlxdVerified publisher0.5.12 of 2See more

owl xd 0.5.1

2 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lishimeng/owl-console:v0.11.2c79a67657baf
golang.org/x/crypto@v0.14.0
0.43.0
lishimeng/owl-messager:v0.11.23d00485e64dc
golang.org/x/crypto@v0.14.0
0.43.0

Open the chart page →

4,110
passportxdVerified publisher0.2.162 of 2See more

passport xd 0.2.16

2 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lishimeng/passport:v0.2.163e7d05ded625
golang.org/x/crypto@v0.7.0
0.43.0
lishimeng/passport-profile:v0.2.160970dfe5dc8f
golang.org/x/crypto@v0.7.0
0.43.0

Open the chart page →

3,976
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
golang.org/x/crypto@v0.7.0
0.43.0

Open the chart page →

7,672
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
golang.org/x/crypto@v0.7.0
0.43.0

Open the chart page →

1,998
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
golang.org/x/crypto@v0.13.0
0.43.0

Open the chart page →

2,070
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
golang.org/x/crypto@v0.5.0
0.43.0

Open the chart page →

13,875
ygdrassil-monitoringygdrassilVerified publisher0.4.07 of 10See more

ygdrassil-monitoring ygdrassil 0.4.0

7 of the 10 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
grafana/grafana:11.5.15781759b3d27
golang.org/x/crypto@v0.32.0
0.43.0
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/crypto@v0.31.0
0.43.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.79.2193280a33bc1
golang.org/x/crypto@v0.31.0
0.43.0
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
golang.org/x/crypto@v0.21.0
0.43.0
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
golang.org/x/crypto@v0.31.0
0.43.0
quay.io/prometheus/pushgateway:v1.11.099392035ae99
golang.org/x/crypto@v0.32.0
0.43.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
golang.org/x/crypto@v0.28.0
0.43.0

Open the chart page →

9,426
prometheusalertygqygq2Verified publisher1.0.01 of 1See more

prometheusalert ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
golang.org/x/crypto@v0.22.0
0.43.0

Open the chart page →

1,610
matrixdb-operatorymatrixOfficialVerified publisher0.13.01 of 2See more

matrixdb-operator ymatrix 0.13.0

1 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
matrixdb/kubebuilder_kube-rbac-proxy:v0.12.0ed3c7e6291e8
golang.org/x/crypto@v0.0.0-20211115234514-b4de73f9ece8
0.43.0

Open the chart page →

1,966
rawfile-csiymatrixVerified publisher0.2.12 of 4See more

rawfile-csi ymatrix 0.2.1

2 of the 4 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
matrixdb/custom-external-provisioner:4622a07d7-202204247e9ffe249a51
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.43.0
matrixdb/rawfile-csi:v0.2.195b2e38e913d
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.43.0

Open the chart page →

8,000
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.43.0

Open the chart page →

3,024
zahori-consulzahoriVerified publisher1.0.12 of 2See more

zahori-consul zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.43.0
hashicorp/consul-k8s-control-plane:1.1.262bed1bf8106
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.43.0

Open the chart page →

5,076
zahori-moonzahoriVerified publisher1.0.11 of 3See more

zahori-moon zahori 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-47913.

Container imageDigestPackageFixed in
quay.io/aerokube/moon-ui:2.0.589990b146824
golang.org/x/crypto@v0.10.0
0.43.0

Open the chart page →

2,908

Container images carrying it

2,313 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/knative-releases/knative.dev/serving/cmd/webhookd27b4495ccc3
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.43.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookf16c0e022203
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.43.0
1
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
golang.org/x/crypto@v0.31.0
0.43.0
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.43.0
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
golang.org/x/crypto@v0.15.0
0.43.0
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.43.0
1
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
golang.org/x/crypto@v0.32.0
0.43.0
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.43.0
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.43.0
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
golang.org/x/crypto@v0.22.0
0.43.0
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.43.0
1
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
golang.org/x/crypto@v0.22.0
0.43.0
1
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.43.0
1
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.43.0
1
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
golang.org/x/crypto@v0.22.0
0.43.0
1
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.43.0
1
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
golang.org/x/crypto@v0.22.0
0.43.0
1
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.43.0
1
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
golang.org/x/crypto@v0.1.0
0.43.0
1
gcr.io/projectsigstore/cosigned784518ff3ee7
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0
1
gcr.io/projectsigstore/policy-webhook82940e8c3e0d
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.43.0
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
golang.org/x/crypto@v0.0.0-20211209193657-4570a0811e8b
0.43.0
1
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
golang.org/x/crypto@v0.37.0
0.43.0
1
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.43.0
1
ghcr.io/alexbakker/alertmanager-ntfy:1.0.12f4db8064595
golang.org/x/crypto@v0.39.0
0.43.0
1
ghcr.io/alpineworks/katalog-backend:v1.0.77e7a26393cd1
golang.org/x/crypto@v0.27.0
0.43.0
1
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
golang.org/x/crypto@v0.27.0
0.43.0
1
ghcr.io/alpineworks/versitygw-webhook-pulsar-proxy:v1.0.06e9ced773732
golang.org/x/crypto@v0.38.0
0.43.0
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
golang.org/x/crypto@v0.1.0
0.43.0
1
ghcr.io/angelnu/dnsmadeeasy-webhook:v1.9.0a5ca158b1f02
golang.org/x/crypto@v0.35.0
0.43.0
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
golang.org/x/crypto@v0.15.0
0.43.0
1
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
golang.org/x/crypto@v0.35.0
0.43.0
1
ghcr.io/appscode/auditor:v0.0.1c62c89ee706d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.43.0
1
ghcr.io/appscode/capa-vpc-peering-operator:v0.0.4b1557553a2b3
golang.org/x/crypto@v0.15.0
0.43.0
1
ghcr.io/appscode/capi-ops-manager:v0.0.57465f35b684c
golang.org/x/crypto@v0.31.0
0.43.0
1
ghcr.io/appscode/docker-machine-operator:v0.0.481f6007abb4e
golang.org/x/crypto@v0.21.0
0.43.0
1
ghcr.io/appscode/fileserver:v0.0.2b1857871e06c
golang.org/x/crypto@v0.24.0
0.43.0
1
ghcr.io/appscode/gh-ci-webhook:v0.0.2036ce246d884e
golang.org/x/crypto@v0.31.0
0.43.0
1
ghcr.io/appscode/grafana:v2025.2.367d18880448c
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.43.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.18.27de54b6dedc8
golang.org/x/crypto@v0.29.0
0.43.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.15.0d8cc6ffb9819
golang.org/x/crypto@v0.14.0
0.43.0
1
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
golang.org/x/crypto@v0.17.0
0.43.0
1
ghcr.io/appscode/smtprelay:v0.0.479c9c76a78e6
golang.org/x/crypto@v0.32.0
0.43.0
1
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
golang.org/x/crypto@v0.12.0
0.43.0
1
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
golang.org/x/crypto@v0.36.0
0.43.0
1
ghcr.io/argonix-io/argonix-api:1.0.0aa679ddf5c3a
golang.org/x/crypto@v0.21.0
0.43.0
1
ghcr.io/arpa-network/node-client:latest657a2c9f6e6d
golang.org/x/crypto@v0.22.0
0.43.0
1
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
golang.org/x/crypto@v0.37.0
0.43.0
1
ghcr.io/astriaorg/astria-indexer:0.1.05cf1e5709820
golang.org/x/crypto@v0.24.0
0.43.0
1
ghcr.io/astriaorg/astria-indexer-api:0.1.03490d9900af1
golang.org/x/crypto@v0.24.0
0.43.0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.