StackRadar

CVE-2025-58060

High

Advisory

Published 11 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.0
base score, highest
EPSS
0.010
60th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
176
of 17,781 indexed, latest versions
Container images
177
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: cups security update

Carried by container images the latest versions of 176 of 17,781 indexed charts deploy, on 177 images.

Affected packageAffected versionsFixed inImages
cupsdeb2.1.3-4ubuntu0.3, 2.1.3-4ubuntu0.4, 2.1.3-4ubuntu0.7, 2.1.3-4ubuntu0.10+22 more2.1.3-4ubuntu0.11+esm9, 2.2.7-1ubuntu2.10+esm7, 2.3.1-9ubuntu1.9+esm1, 2.4.1op1-1ubuntu4.12+2 more101
cupsrpm1:1.6.3-40.el7, 1:2.2.6-33.el8, 1:2.2.6-38.el8, 1:2.2.6-40.el8+10 more1:1.6.3-52.el7_9.1, 1:2.2.6-63.el8_1066
cupsapk2.4.11-r02.4.16-r010
OSV records
ALPINE-CVE-2025-58060DEBIAN-CVE-2025-58060RHSA-2025:15702RHSA-2025:17054UBUNTU-CVE-2025-58060
Also known as
RHSA-2025:17049, RHSA-2025:17141, RHSA-2025:17144, RHSA-2025:17164, USN-7745-1

Charts affected

176 by stars
ChartLatestAffected imagesRadar Score
sonatype-nexus3simcube1.0.11 of 2See more

sonatype-nexus3 simcube 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
sonatype/nexus3:3.58.1586060431b64
cups@1:2.2.6-51.el8
1:2.2.6-63.el8_10

Open the chart page →

4,946
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1

Open the chart page →

30,687
speckle-preview-service-branch-testing6speckleVerified publisher2.23.14-branch.testing6.334655-b4e04ee1 of 1See more

speckle-preview-service-branch-testing6 speckle 2.23.14-branch.testing6.334655-b4e04ee

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9

Open the chart page →

5,950
speckle-server-branch-hotfix-2.19.1speckleVerified publisher2.19.2-branch.hotfix-2.19.1.124125-665e7e11 of 5See more

speckle-server-branch-hotfix-2.19.1 speckle 2.19.2-branch.hotfix-2.19.1.124125-665e7e1

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,368
speckle-server-branch-hotfix-2.20.2speckleVerified publisher2.20.3-branch.hotfix-2.20.2.149555-37ea0cb1 of 5See more

speckle-server-branch-hotfix-2.20.2 speckle 2.20.3-branch.hotfix-2.20.2.149555-37ea0cb

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,400
speckle-server-branch-testingspeckleVerified publisher2.17.14-branch.testing.72707.921a5f81 of 5See more

speckle-server-branch-testing speckle 2.17.14-branch.testing.72707.921a5f8

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.17.14-branch.testing.72707.921a5f884fc39bca0c8
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

14,679
speckle-server-branch-testing1speckleVerified publisher2.20.6-branch.testing1.154030-9b091141 of 5See more

speckle-server-branch-testing1 speckle 2.20.6-branch.testing1.154030-9b09114

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,400
speckle-server-branch-testing2speckleVerified publisher2.18.11-branch.testing2.88634-335d4691 of 5See more

speckle-server-branch-testing2 speckle 2.18.11-branch.testing2.88634-335d469

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d4694bd113093583
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

14,221
speckle-server-branch-testing3speckleVerified publisher2.18.12-branch.testing3.88744-f55b3411 of 5See more

speckle-server-branch-testing3 speckle 2.18.12-branch.testing3.88744-f55b341

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.18.12-branch.testing3.88744-f55b3414bd113093583
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

14,221
speckle-server-branch-testing4speckleVerified publisher2.20.2-branch.testing4.134160-9fad4b21 of 5See more

speckle-server-branch-testing4 speckle 2.20.2-branch.testing4.134160-9fad4b2

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,019
speckle-server-branch-testing5speckleVerified publisher2.21.3-branch.testing5.219631-2153bef1 of 5See more

speckle-server-branch-testing5 speckle 2.21.3-branch.testing5.219631-2153bef

1 of the 5 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9

Open the chart page →

15,635
speckle-server-branch-testing6speckleVerified publisher2.25.10-branch.testing6.645-b125c1e1 of 4See more

speckle-server-branch-testing6 speckle 2.25.10-branch.testing6.645-b125c1e

1 of the 4 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9

Open the chart page →

11,100
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
cups@1:2.2.6-38.el8
1:2.2.6-63.el8_10

Open the chart page →

28,165
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review:1.0.35954d2be66e95
cups@1:2.2.6-45.el8_6.2
1:2.2.6-63.el8_10

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review:1.0.35954d2be66e95
cups@1:2.2.6-45.el8_6.2
1:2.2.6-63.el8_10

Open the chart page →

11,554
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
cups@2.2.7-1ubuntu2.8
2.2.7-1ubuntu2.10+esm7

Open the chart page →

14,493
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
cups@2.3.1-9ubuntu1.3
2.3.1-9ubuntu1.9+esm1

Open the chart page →

18,756
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4

Open the chart page →

8,193
owncloudth-chartsVerified publisher0.2.11 of 1See more

owncloud th-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
owncloud/server:10.15.051d9b74fc2a8
cups@2.3.1-9ubuntu1.8
2.3.1-9ubuntu1.9+esm1

Open the chart page →

10,006
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
cups@1:2.2.6-38.el8
1:2.2.6-63.el8_10

Open the chart page →

12,455
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4

Open the chart page →

7,628
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1

Open the chart page →

14,364
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
cups@1:2.2.6-38.el8
1:2.2.6-63.el8_10

Open the chart page →

28,605
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
cups@2.4.1op1-1ubuntu4.10
2.4.1op1-1ubuntu4.12

Open the chart page →

14,100
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
cups@1:2.2.6-40.el8
1:2.2.6-63.el8_10

Open the chart page →

11,577
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-58060.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
cups@1:2.2.6-50.el8
1:2.2.6-63.el8_10

Open the chart page →

6,016

Container images carrying it

177 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
codeurjc/server:v1.0310bea5b1ee7
cups@1:2.2.6-50.el8
1:2.2.6-63.el8_10
8
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
cups@2.1.3-4ubuntu0.4
2.1.3-4ubuntu0.11+esm9
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
cups@2.1.3-4ubuntu0.7
2.1.3-4ubuntu0.11+esm9
4
mastercloudapps/server:v2.23f3d24dfe2686
cups@1:2.2.6-50.el8
1:2.2.6-63.el8_10
4
quay.io/strimzi/operator:0.37.052f376e64b9b
cups@1:2.2.6-51.el8_8.1
1:2.2.6-63.el8_10
4
gchq/hdfs:3.3.35ec58edbb2db
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4
3
jacobalberty/unifi:v10.0.162896c0ab82d33
cups@2.3.1-9ubuntu1.9
2.3.1-9ubuntu1.9+esm1
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
cups@2.1.3-4ubuntu0.7
2.1.3-4ubuntu0.11+esm9
3
selenium/hub:3.141.5902f251d48d5f
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
3
quay.io/devtron/ai-agent:0.0.16545dac92173
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
3
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1
2
mbentley/omada-controller:4.3f4e682274bed
cups@2.2.7-1ubuntu2.10
2.2.7-1ubuntu2.10+esm7
2
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d469:2.18.12-branch.testing3.88744-f55b3414bd113093583
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9
2
stakater/stakater-nordmart-review:1.0.35954d2be66e95
cups@1:2.2.6-45.el8_6.2
1:2.2.6-63.el8_10
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
2
quay.io/keycloak/keycloak:20.0054ef67eb7da
cups@1:2.2.6-50.el8
1:2.2.6-63.el8_10
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
cups@1:2.2.6-40.el8
1:2.2.6-63.el8_10
2
quay.io/strimzi/operator:0.39.002f6f143fc6d
cups@1:2.2.6-54.el8_9
1:2.2.6-63.el8_10
2
1dev/server:11.9.0cd5b12fe5471
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4
1
5200710/hadoop:3.2.3-java8092d3088a5fb
cups@2.3.1-9ubuntu1.6
2.3.1-9ubuntu1.9+esm1
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
cups@2.4.11-r0
2.4.16-r0
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
cups@2.4.1op1-1ubuntu4.11
2.4.1op1-1ubuntu4.12
1
anguda/ant-media:2.5c435285fc241
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1
1
anujdatar/cups:25.07.01685df04a643b
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
apachepulsar/pulsar:2.9.0d056c89b7131
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
apachepulsar/pulsar:2.8.2d538416d5afe
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
apache/tika:2.9.0.092d055a84e9e
cups@2.4.1op1-1ubuntu4.4
2.4.1op1-1ubuntu4.12
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
cups@1:2.2.6-38.el8
1:2.2.6-63.el8_10
1
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
cups@1:2.2.6-51.el8_8.1
1:2.2.6-63.el8_10
1
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
cups@1:2.2.6-51.el8_8.1
1:2.2.6-63.el8_10
1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
cups@1:2.2.6-51.el8_8.1
1:2.2.6-63.el8_10
1
assistiot/identity-manager_kc:latest0df4b4fa899a
cups@1:2.2.6-45.el8_6.2
1:2.2.6-63.el8_10
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
cheyang/distributed-tf:1.6.046cc34755493
cups@2.1.3-4ubuntu0.4
2.1.3-4ubuntu0.11+esm9
1
countly/countly-server:25.05.4e3c238248f99
cups@2.3.1-9ubuntu1.8
2.3.1-9ubuntu1.9+esm1
1
deconzcommunity/deconz:2.29.2062de2362641
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
cups@2.3.1-9ubuntu1.9
2.3.1-9ubuntu1.9+esm1
1
fiware/mintaka:0.7.092a3c5cf43c0
cups@1:2.2.6-44.el8
1:2.2.6-63.el8_10
1
fiware/mintaka:latestefc6793388cc
cups@1:2.2.6-44.el8
1:2.2.6-63.el8_10
1
gchq/accumulo:2.0.1c460bb587d6d
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4
1
gurolakman/oam:4.0.0ed8fd2062548
cups@1:2.2.6-60.el8_10
1:2.2.6-63.el8_10
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
cups@1:2.2.6-54.el8_9
1:2.2.6-63.el8_10
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
cups@1:2.2.6-54.el8_9
1:2.2.6-63.el8_10
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
cups@1:2.2.6-54.el8_9
1:2.2.6-63.el8_10
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
cups@1:2.2.6-54.el8_9
1:2.2.6-63.el8_10
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
cups@1:2.2.6-54.el8_9
1:2.2.6-63.el8_10
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.