StackRadar

CVE-2025-52099

High

Advisory

Published 22 May 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
555
of 17,787 indexed, latest versions
Container images
472
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 555 of 17,787 indexed charts deploy, on 472 images.

Affected packageAffected versionsFixed inImages
sqlite3deb3.8.2-1ubuntu2, 3.8.2-1ubuntu2.1, 3.8.2-1ubuntu2.2, 3.11.0-1ubuntu1+22 more3.8.2-1ubuntu2.2+esm5, 3.11.0-1ubuntu1.5+esm3, 3.22.0-1ubuntu0.7+esm2, 3.31.1-4ubuntu0.7+2 more472
OSV records
UBUNTU-CVE-2025-52099
Also known as
USN-7528-1, USN-7679-1

Charts affected

555 by stars
ChartLatestAffected imagesRadar Score
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2025-52099.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7

Open the chart page →

15,230
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2025-52099.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4

Open the chart page →

9,248
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2025-52099.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
sqlite3@3.31.1-4ubuntu0.6
3.31.1-4ubuntu0.7

Open the chart page →

6,285
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-52099.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4

Open the chart page →

14,100
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-52099.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
yandex/clickhouse-server:21.3.204eccfffb01d7
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7

Open the chart page →

9,207

Container images carrying it

472 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
linuxserver/plex:1.25.24a13ced2326c
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
linuxserver/unifi-controller:8.0.240ae315a3a456
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
linuxserver/unifi-controller:7.3.83ab105cc50322
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
litmuschaos/mongo:4.2.899961210d467
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
1
livekit/ingress:v1.2.21ab01641b366
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.4
1
longhornio/longhorn-manager:v1.2.3dca34321452c
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
mbround18/valheim:3.1.070bd4da591cd
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4
1
mediagis/nominatim:3.7c15e941485ef
sqlite3@3.31.1-4ubuntu0.3
3.31.1-4ubuntu0.7
1
mediagis/nominatim:4.2d0eae7b51374
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4
1
milvusdb/milvus:v2.2.13a3a55e1c1497
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
sqlite3@3.31.1-4ubuntu0.3
3.31.1-4ubuntu0.7
1
mlikiowa/napcat-docker:latest1336a777f9a4
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4
1
mshanley80/httpbin2022:latest5b189a70c0fb
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
muluder/prograncontrollermcord:0.1.843b597a93da7
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
1
netboxcommunity/netbox:v3.2.83d652dca5351
sqlite3@3.37.2-2
3.37.2-2ubuntu0.4
1
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
sqlite3@3.11.0-1ubuntu1.5
3.11.0-1ubuntu1.5+esm3
1
omecproject/c3po-hssdb:master-latest28a90cc26716
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
sqlite3@3.22.0-1
3.22.0-1ubuntu0.7+esm2
1
omecproject/mme-exporter:paging-latestbcc5f19fd676
sqlite3@3.22.0-1ubuntu0.2
3.22.0-1ubuntu0.7+esm2
1
omecproject/onos-progran:1.0.05715e5648aa0
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
1
onosproject/onos:2.2.144914a8d4b3f
sqlite3@3.22.0-1ubuntu0.2
3.22.0-1ubuntu0.7+esm2
1
opendatacube/pipelines:wofs-1.225d810e8504b8
sqlite3@3.22.0-1
3.22.0-1ubuntu0.7+esm2
1
opendatacube/restcube:latest91870111837c
sqlite3@3.22.0-1
3.22.0-1ubuntu0.7+esm2
1
opendatacube/wms:latest1b90cdf68831
sqlite3@3.22.0-1
3.22.0-1ubuntu0.7+esm2
1
openelevation/open-elevation:latest82fb21612e86
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
openkm/openkm-ce:6.3.113bc465a7461b
sqlite3@3.31.1-4ubuntu0.3
3.31.1-4ubuntu0.7
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7
1
openthread/otbr:latestf307f59f6432
sqlite3@3.22.0-1ubuntu0.7
3.22.0-1ubuntu0.7+esm2
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
1
opsmx11/issuegen:v2.1.05c50ca123d88
sqlite3@3.8.2-1ubuntu2.1
3.8.2-1ubuntu2.2+esm5
1
owncloud/server:10.15.051d9b74fc2a8
sqlite3@3.31.1-4ubuntu0.6
3.31.1-4ubuntu0.7
1
oxfordsemantic/rdfox:5.6db17910eb855
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
oxfordsemantic/rdfox-init:5.6baf570ff968d
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
penpotapp/backend:2.2.147853d9bb9dd
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4
1
penpotapp/exporter:2.2.15c835ffd87ab
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.4
1
photoprism/photoprism:220629-jammy2954334adbda
sqlite3@3.37.2-2
3.37.2-2ubuntu0.4
1
photoprism/photoprism:240711-cefc6fd632ca74
sqlite3@3.45.1-1ubuntu2
3.45.1-1ubuntu2.3
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
sqlite3@3.11.0-1ubuntu1.5
3.11.0-1ubuntu1.5+esm3
1
pozetroninc/keydb:v6.0.1653ae64f29da8
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
1
project2team4/react:latest3ff031a08887
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7
1
pschichtel/mindustry-server:v145.1b543e9c2d371
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.