StackRadar

CVE-2025-58364

Medium

Advisory

Published 11 Sept 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
175
of 17,781 indexed, latest versions
Container images
174
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: cups security update

Carried by container images the latest versions of 175 of 17,781 indexed charts deploy, on 174 images.

Affected packageAffected versionsFixed inImages
cupsdeb2.1.3-4ubuntu0.3, 2.1.3-4ubuntu0.4, 2.1.3-4ubuntu0.7, 2.1.3-4ubuntu0.10+22 more2.1.3-4ubuntu0.11+esm9, 2.2.7-1ubuntu2.10+esm7, 2.3.1-9ubuntu1.9+esm1, 2.4.1op1-1ubuntu4.12+2 more101
cupsrpm1:2.2.6-33.el8, 1:2.2.6-38.el8, 1:2.2.6-40.el8, 1:2.2.6-44.el8+9 more1:2.2.6-64.el8_1063
cupsapk2.4.11-r02.4.16-r010
OSV records
ALPINE-CVE-2025-58364DEBIAN-CVE-2025-58364RHSA-2025:22063UBUNTU-CVE-2025-58364
Also known as
USN-7745-1

Charts affected

175 by stars
ChartLatestAffected imagesRadar Score
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1

Open the chart page →

30,687
speckle-preview-service-branch-testing6speckleVerified publisher2.23.14-branch.testing6.334655-b4e04ee1 of 1See more

speckle-preview-service-branch-testing6 speckle 2.23.14-branch.testing6.334655-b4e04ee

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9

Open the chart page →

5,950
speckle-server-branch-hotfix-2.19.1speckleVerified publisher2.19.2-branch.hotfix-2.19.1.124125-665e7e11 of 5See more

speckle-server-branch-hotfix-2.19.1 speckle 2.19.2-branch.hotfix-2.19.1.124125-665e7e1

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,368
speckle-server-branch-hotfix-2.20.2speckleVerified publisher2.20.3-branch.hotfix-2.20.2.149555-37ea0cb1 of 5See more

speckle-server-branch-hotfix-2.20.2 speckle 2.20.3-branch.hotfix-2.20.2.149555-37ea0cb

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,400
speckle-server-branch-testingspeckleVerified publisher2.17.14-branch.testing.72707.921a5f81 of 5See more

speckle-server-branch-testing speckle 2.17.14-branch.testing.72707.921a5f8

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.17.14-branch.testing.72707.921a5f884fc39bca0c8
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

14,679
speckle-server-branch-testing1speckleVerified publisher2.20.6-branch.testing1.154030-9b091141 of 5See more

speckle-server-branch-testing1 speckle 2.20.6-branch.testing1.154030-9b09114

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,400
speckle-server-branch-testing2speckleVerified publisher2.18.11-branch.testing2.88634-335d4691 of 5See more

speckle-server-branch-testing2 speckle 2.18.11-branch.testing2.88634-335d469

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d4694bd113093583
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

14,221
speckle-server-branch-testing3speckleVerified publisher2.18.12-branch.testing3.88744-f55b3411 of 5See more

speckle-server-branch-testing3 speckle 2.18.12-branch.testing3.88744-f55b341

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.18.12-branch.testing3.88744-f55b3414bd113093583
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

14,221
speckle-server-branch-testing4speckleVerified publisher2.20.2-branch.testing4.134160-9fad4b21 of 5See more

speckle-server-branch-testing4 speckle 2.20.2-branch.testing4.134160-9fad4b2

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
cups@2.4.2-3+deb12u5
2.4.2-3+deb12u9

Open the chart page →

16,019
speckle-server-branch-testing5speckleVerified publisher2.21.3-branch.testing5.219631-2153bef1 of 5See more

speckle-server-branch-testing5 speckle 2.21.3-branch.testing5.219631-2153bef

1 of the 5 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9

Open the chart page →

15,635
speckle-server-branch-testing6speckleVerified publisher2.25.10-branch.testing6.645-b125c1e1 of 4See more

speckle-server-branch-testing6 speckle 2.25.10-branch.testing6.645-b125c1e

1 of the 4 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9

Open the chart page →

11,100
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
cups@1:2.2.6-38.el8
1:2.2.6-64.el8_10

Open the chart page →

28,165
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review:1.0.35954d2be66e95
cups@1:2.2.6-45.el8_6.2
1:2.2.6-64.el8_10

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review:1.0.35954d2be66e95
cups@1:2.2.6-45.el8_6.2
1:2.2.6-64.el8_10

Open the chart page →

11,554
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
cups@2.2.7-1ubuntu2.8
2.2.7-1ubuntu2.10+esm7

Open the chart page →

14,493
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
cups@2.3.1-9ubuntu1.3
2.3.1-9ubuntu1.9+esm1

Open the chart page →

18,756
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4

Open the chart page →

8,193
owncloudth-chartsVerified publisher0.2.11 of 1See more

owncloud th-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
owncloud/server:10.15.051d9b74fc2a8
cups@2.3.1-9ubuntu1.8
2.3.1-9ubuntu1.9+esm1

Open the chart page →

10,006
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
cups@1:2.2.6-38.el8
1:2.2.6-64.el8_10

Open the chart page →

12,455
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4

Open the chart page →

7,628
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1

Open the chart page →

14,364
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
cups@1:2.2.6-38.el8
1:2.2.6-64.el8_10

Open the chart page →

28,605
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
cups@2.4.1op1-1ubuntu4.10
2.4.1op1-1ubuntu4.12

Open the chart page →

14,100
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
cups@1:2.2.6-40.el8
1:2.2.6-64.el8_10

Open the chart page →

11,577
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-58364.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
cups@1:2.2.6-50.el8
1:2.2.6-64.el8_10

Open the chart page →

6,016

Container images carrying it

174 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
wavefronthq/proxy:9.2d1064d28f6eb
cups@2.2.7-1ubuntu2.8
2.2.7-1ubuntu2.10+esm7
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
cups@2.4.1op1-1ubuntu4.10
2.4.1op1-1ubuntu4.12
1
yuzutech/kroki-bpmn:0.29.1444805c4b917
cups@2.4.11-r0
2.4.16-r0
1
yuzutech/kroki-diagramsnet:0.29.1b810edbf9c62
cups@2.4.11-r0
2.4.16-r0
1
yuzutech/kroki-excalidraw:0.29.157917319ea70
cups@2.4.11-r0
2.4.16-r0
1
yuzutech/kroki-mermaid:0.29.1963b4acfde6e
cups@2.4.11-r0
2.4.16-r0
1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
cups@2.3.3op2-3+deb11u8
2.4.7-1.2ubuntu7.4
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
cups@2.4.1op1-1ubuntu4.1
2.4.1op1-1ubuntu4.12
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
cups@1:2.2.6-33.el8
1:2.2.6-64.el8_10
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
cups@2.2.7-1ubuntu2.10
2.2.7-1ubuntu2.10+esm7
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
cups@2.4.7-1.2ubuntu7.3
2.4.7-1.2ubuntu7.4
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
cups@2.4.11-r0
2.4.16-r0
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
cups@2.4.11-r0
2.4.16-r0
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
cups@2.2.7-1ubuntu2.8
2.2.7-1ubuntu2.10+esm7
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
cups@2.4.2-3+deb12u8
2.4.2-3+deb12u9
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
cups@2.4.2-3+deb12u4
2.4.2-3+deb12u9
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
cups@2.3.1-9ubuntu1.2
2.3.1-9ubuntu1.9+esm1
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
cups@2.4.1op1-1ubuntu4.8
2.4.1op1-1ubuntu4.12
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
cups@2.4.1op1-1ubuntu4.8
2.4.1op1-1ubuntu4.12
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
cups@2.4.1op1-1ubuntu4.11
2.4.1op1-1ubuntu4.12
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
cups@2.4.2-3+deb12u4
2.4.2-3+deb12u9
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
cups@1:2.2.6-54.el8_9
1:2.2.6-64.el8_10
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
cups@1:2.2.6-38.el8
1:2.2.6-64.el8_10
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
cups@1:2.2.6-45.el8_6.2
1:2.2.6-64.el8_10
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
cups@1:2.2.6-40.el8
1:2.2.6-64.el8_10
1
quay.io/fiware/contract-management:3.3.122bcfcf874451
cups@1:2.2.6-61.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
cups@1:2.2.6-61.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
cups@1:2.2.6-44.el8
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-account:1.18.06b25aac03414
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
cups@1:2.2.6-62.el8_10
1:2.2.6-64.el8_10
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.