StackRadar

CVE-2025-58183

High

Advisory

Published 29 Oct 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,574
of 17,844 indexed, latest versions
Container images
4,008
deployed by those charts
Fix available
8 of 9
affected packages

Red Hat Security Advisory: skopeo security update

Carried by container images the latest versions of 3,574 of 17,844 indexed charts deploy, on 4,008 images.

Affected packageAffected versionsFixed inImages
skopeorpm2:1.11.2-0.1.el9, 2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.5-5.module+el8.10.0+23772+e5018371, 2:1.20.0-2.el9_72
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-82.module+el8.10.0+23772+e50183711
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+23772+e50183711
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+23772+e50183711
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+23772+e50183711
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc4:1.2.9-2.module+el8.10.0+23772+e50183711
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+23772+e50183711
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+165 more1.24.84,008
OSV records
RHSA-2025:23326RHSA-2025:23374DEBIAN-CVE-2025-58183GO-2025-4014
Also known as
BIT-golang-2025-58183, RHSA-2026:5234

Charts affected

3,574 by stars
ChartLatestAffected imagesRadar Score
parcaparca-chart0.1.01 of 1See more

parca parca-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
stdlib@go1.21.1
1.24.8

Open the chart page →

1,988
parcaparca-rr0.1.02 of 2See more

parca parca-rr 0.1.0

2 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.24.23776500fde82
stdlib@go1.25.1
1.24.8
ghcr.io/parca-dev/parca-agent:v0.42.0adc0eeb4dd05
stdlib@go1.24.7
1.24.8

Open the chart page →

2,418
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
stdlib@go1.24.6
1.24.8
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.1e63459ec5965
stdlib@go1.24.6
1.24.8

Open the chart page →

3,991
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
stdlib@go1.22.5
1.24.8

Open the chart page →

4,318
scaleway-webhookparticuleio0.0.11 of 1See more

scaleway-webhook particuleio 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
stdlib@go1.15.2
1.24.8

Open the chart page →

2,356
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
stdlib@go1.24.7
1.24.8

Open the chart page →

2,100
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.24.8

Open the chart page →

1,802
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
stdlib@go1.23.3
1.24.8

Open the chart page →

5,057
plausible-exporterpascaliskeVerified publisher1.0.01 of 1See more

plausible-exporter pascaliske 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/riesinger/plausible-exporter:1.1.061112cda1be5
stdlib@go1.19.7
1.24.8

Open the chart page →

701
vikunjapascaliskeVerified publisher5.1.01 of 1See more

vikunja pascaliske 5.1.0

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
vikunja/vikunja:0.24.6ed1f3ed467fe
stdlib@go1.23.4
1.24.8

Open the chart page →

1,391
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest77280d10744f
stdlib@go1.24.6
1.24.8

Open the chart page →

4,462
pagespawan-pages1.0.01 of 3See more

pages pawan-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.24.8

Open the chart page →

20,585
pax-prometheuspaxtecnologia0.7.21 of 8See more

pax-prometheus paxtecnologia 0.7.2

1 of the 8 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
stdlib@go1.22.2
1.24.8

Open the chart page →

1,840
everest-db-namespacepercona1.13.01 of 1See more

everest-db-namespace percona 1.13.0

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
percona/everest-helmtools:0.0.1904458d04a18
stdlib@go1.24.6
1.24.8

Open the chart page →

795
pmm-ha-dependenciespercona1.0.02 of 4See more

pmm-ha-dependencies percona 1.0.0

2 of the 4 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.25.41d6f18dbd599
stdlib@go1.25.1
1.24.8
altinity/metrics-exporter:0.25.46ecf67edfb71
stdlib@go1.25.1
1.24.8

Open the chart page →

2,528
permission-managerpermission-manager1.0.0-seal1 of 1See more

permission-manager permission-manager 1.0.0-seal

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
stdlib@go1.16.8
1.24.8

Open the chart page →

2,263
matomopetbattle11.0.12 of 2See more

matomo petbattle 11.0.1

2 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
stdlib@go1.25.0
1.24.8
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
stdlib@go1.25.0
1.24.8

Open the chart page →

11,835
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
stdlib@go1.16.12
1.24.8

Open the chart page →

15,586
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
stdlib@go1.16.12
1.24.8

Open the chart page →

15,586
mariadbpetersandor15.2.51 of 1See more

mariadb petersandor 15.2.5

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
bitnami/mariadb:11.7.216a7dae804fb
stdlib@go1.22.12
1.24.8

Open the chart page →

3,066
mongodbpetersandor14.1.81 of 1See more

mongodb petersandor 14.1.8

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
bitnami/mongodb:8.0.8b3bd5b6be9a0
stdlib@go1.23.7
1.24.8

Open the chart page →

4,718
redispetersandor15.2.21 of 1See more

redis petersandor 15.2.2

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
bitnami/redis:7.4.24e65bf641805
stdlib@go1.23.8
1.24.8

Open the chart page →

2,889
whoamiphilippwaller1.0.31 of 1See more

whoami philippwaller 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
traefik/whoami:v1.8.08d0f943abdbf
stdlib@go1.17.7
1.24.8

Open the chart page →

1,008
codimdphntom0.1.121 of 3See more

codimd phntom 0.1.12

1 of the 3 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
phntom/codimd:2.4.31b9aafbb62e6
stdlib@go1.16
1.24.8

Open the chart page →

6,593
container-agentphntom100.0.11 of 1See more

container-agent phntom 100.0.1

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
circleci/container-agent:34d8d0ae5efc3
stdlib@go1.19.7
1.24.8

Open the chart page →

1,975
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
stdlib@go1.19.2
1.24.8

Open the chart page →

5,089
goalertphntom0.0.291 of 1See more

goalert phntom 0.0.29

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
phntom/goalert:0.0.298ca4df55499b
stdlib@go1.21.5
1.24.8

Open the chart page →

1,048
kochiphntom1.1.41 of 1See more

kochi phntom 1.1.4

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.24.8

Open the chart page →

2,960
loki-stackphntom2.10.22 of 2See more

loki-stack phntom 2.10.2

2 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
grafana/loki:2.4.2b3af8ead67d7
stdlib@go1.17.2
1.24.8
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.24.8

Open the chart page →

5,723
mindavphntom0.1.61 of 2See more

mindav phntom 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
phntom/mindav:0.1.7-kix35695f546abbb
stdlib@go1.16.2
1.24.8

Open the chart page →

4,195
npre-essentialsphntom0.1.6013 of 22See more

npre-essentials phntom 0.1.60

13 of the 22 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.24.8
grafana/loki:2.6.11ee60f980950
stdlib@go1.17.9
1.24.8
grafana/promtail:2.7.0c16c710f7333
stdlib@go1.19.2
1.24.8
phntom/chartmuseum:v0.15.29242b4df9e65
stdlib@go1.18.5
1.24.8
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.24.8
phntom/oauth2-proxy:v7.3.48ea656a2a895
stdlib@go1.19.2
1.24.8
quay.io/groundcover/grafana:9.3.18c65b333a3d3
stdlib@go1.19.3
1.24.8
quay.io/prometheus-operator/prometheus-operator:v0.61.1cd7d1a82ef00
stdlib@go1.19.3
1.24.8
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.24.8
quay.io/prometheuscommunity/elasticsearch-exporter:v1.5.013a41e8ac836
stdlib@go1.18.4
1.24.8
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.24.8
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.24.8
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
stdlib@go1.19.3
1.24.8

Open the chart page →

26,965
prometheus-elasticsearch-exporterphntom4.5.11 of 2See more

prometheus-elasticsearch-exporter phntom 4.5.1

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.24.8

Open the chart page →

2,031
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
stdlib@go1.19
1.24.8

Open the chart page →

93,123
pagespighosh-pages1.0.01 of 3See more

pages pighosh-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.24.8

Open the chart page →

20,585
blockmeta-servicepinaxVerified publisher0.0.31 of 1See more

blockmeta-service pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
stdlib@go1.22.1
1.24.8

Open the chart page →

1,720
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.10.222f84e3615c8
stdlib@go1.18.5
1.24.8

Open the chart page →

3,675
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
stdlib@go1.24.2
1.24.8

Open the chart page →

7,575
substreams-sink-kvpinaxVerified publisher0.0.41 of 1See more

substreams-sink-kv pinax 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
stdlib@go1.22.9
1.24.8

Open the chart page →

58,934
substreams-sink-nooppinaxVerified publisher0.0.31 of 1See more

substreams-sink-noop pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
stdlib@go1.22.9
1.24.8

Open the chart page →

58,876
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
stdlib@go1.24.5
1.24.8

Open the chart page →

5,223
pixie-operator-chartpixie0.1.71 of 3See more

pixie-operator-chart pixie 0.1.7

1 of the 3 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned1b6002156f56
stdlib@go1.21.7
1.24.8

Open the chart page →

1,907
pixie-operator-helm2-chartpixie0.1.21 of 2See more

pixie-operator-helm2-chart pixie 0.1.2

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinnedf9ea8cef95ac
stdlib@go1.19.6
1.24.8

Open the chart page →

1,762
planectlplanectlVerified publisher0.7.05 of 10See more

planectl planectl 0.7.0

5 of the 10 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
stdlib@go1.22.3
1.24.8
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
stdlib@go1.24.6
1.24.8
gitea/act_runner:0.2.11c57233403eff
stdlib@go1.23.1
1.24.8
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.24.8
quay.io/argoproj/argocd:v2.14.115fc69e31c755
stdlib@go1.22.2
1.24.8

Open the chart page →

27,418
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
stdlib@go1.13.12
1.24.8

Open the chart page →

11,224
pixiecorepnnl-miscscripts0.0.161 of 1See more

pixiecore pnnl-miscscripts 0.0.16

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
pnnlmiscscripts/pixiecore:1.0.1-1c6f17741a0d7
stdlib@go1.24.1
1.24.8

Open the chart page →

939
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
stdlib@go1.18.2
1.24.8

Open the chart page →

2,590
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
stdlib@go1.19.13
1.24.8

Open the chart page →

13,288
podnat-controllerpodnat-controller0.5.21 of 1See more

podnat-controller podnat-controller 0.5.2

1 of the 1 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
gutmensch/podnat-controller:0.5.2566979793fc4
stdlib@go1.22.3
1.24.8

Open the chart page →

987
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.24.8

Open the chart page →

11,545
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-58183.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
stdlib@go1.20.10
1.24.8

Open the chart page →

5,977

Container images carrying it

4,008 by charts deploying them

A fixed version is listed for 8 of the 9 affected packages.

syft 1.42.1 · advisories as of 25 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.