StackRadar

CVE-2025-6020

High

Advisory

Published 17 Jun 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,388
of 17,787 indexed, latest versions
Container images
1,464
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 1,388 of 17,787 indexed charts deploy, on 1,464 images.

Affected packageAffected versionsFixed inImages
pamdeb1.1.8-1ubuntu2, 1.1.8-1ubuntu2.2, 1.1.8-3.2ubuntu2, 1.1.8-3.2ubuntu2.1+24 more1.4.0-11ubuntu2.6, 1.5.2-6+deb12u2, 1.5.3-5ubuntu5.41,338
pamrpm1.1.8-22.el7, 1.1.8-23.el7, 1.3.0-lp151.7.38, 1.3.1-4.el8+18 more0:1.1.8-23.el7_9.1, 0:1.3.1-37.el8_10, 0:1.5.1-15.el9_2.1, 0:1.5.1-24.el9_4+2 more126
OSV records
DEBIAN-CVE-2025-6020RHSA-2025:10024RHSA-2025:10027RHSA-2025:10180RHSA-2025:10357RHSA-2025:9526RLSA-2025:10027RLSA-2025:9526UBUNTU-CVE-2025-6020openSUSE-SU-2025:15256-1
Also known as
RHSA-2025:10358, RHSA-2025:10359, RHSA-2025:10361, RHSA-2025:10362, USN-7580-1

Charts affected

1,388 by stars
ChartLatestAffected imagesRadar Score
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

4,281
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

3,024
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
quay.io/devtron/postgres:14.91b594392f7cb
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

31,447
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

3,645
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.4

Open the chart page →

5,396
ilumilumOfficialVerified publisher6.7.32 of 19See more

ilum ilum 6.7.3

2 of the 19 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/postgresql:16233f361c5819
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

23,289
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

3,434
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

7,031
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
pam@1.3.1-5ubuntu4.7
no fix listed
netrisai/controller-telescope:4.6.0.00414d82948a8b2
pam@1.3.1-5ubuntu4.7
no fix listed
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
pam@1.3.1-5ubuntu4.7
no fix listed
netrisai/controller-web-session-generator:0.2.0a030a31289f4
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

30,481
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

17,306
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

8,510
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/api-gateway:latest40a4970de568
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/customers-service:latest2089811e5cc6
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/vets-service:latestd1165c94dfb3
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/visits-service:latest8d11b50368c6
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed

Open the chart page →

41,902
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6

Open the chart page →

14,276
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
pam@1.3.1-5ubuntu4.1
no fix listed

Open the chart page →

11,831
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
pam@1.3.1-5ubuntu4.7
no fix listed

Open the chart page →

7,333
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

6,386
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

5,669
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
pam@1.3.1-5ubuntu4.3
no fix listed
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
pam@1.3.1-5ubuntu4.3
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

30,811
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

6,484
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
pam@1.3.1-27.el8
0:1.3.1-37.el8_10

Open the chart page →

9,868
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

12,163
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

3,039
codercoderOfficialVerified publisher1.44.62 of 2See more

coder coder 1.44.6

2 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
pam@1.3.1-27.el8
0:1.3.1-37.el8_10
coderenvs/timescale:1.44.676fd37fe6830
pam@1.3.1-27.el8
0:1.3.1-37.el8_10

Open the chart page →

6,847
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

5,915
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

4,951
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

8,685
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

13,455
thehivestrangebee-helmOfficialVerified publisher1.0.63 of 7See more

thehive strangebee-helm 1.0.6

3 of the 7 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

16,161
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

14,266
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

17,346
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
pam@1.3.1-5ubuntu4.1
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
pam@1.3.1-5ubuntu4.1
no fix listed

Open the chart page →

53,012
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

5,915
dolibarrcowboysysopVerified publisher9.0.31 of 3See more

dolibarr cowboysysop 9.0.3

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

9,154
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

14,134
seafiledatamateVerified publisher0.6.03 of 6See more

seafile datamate 0.6.0

3 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

27,358
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

2,578
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
geopython/pycsw:3.0.0-beta284662ea6b78b
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
library/redis:8.4.03906b477e4b6
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

14,043
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

12,270
openctihelm-openctiVerified publisher3.0.91 of 8See more

opencti helm-opencti 3.0.9

1 of the 8 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

3,396
infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

10,460
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
pam@1.3.1-5ubuntu4.7
no fix listed

Open the chart page →

6,354
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
pam@1.3.1-22.el8
0:1.3.1-37.el8_10

Open the chart page →

4,662
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
pam@1.3.1-25.el8
0:1.3.1-37.el8_10

Open the chart page →

4,956
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
istio/proxyv2:1.14.1df69c1a7af7c
pam@1.3.1-5ubuntu4.3
no fix listed
library/python:3.7eedf63967cdb
pam@1.5.2-6
1.5.2-6+deb12u2
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
pam@1.1.8-3.2ubuntu2.1
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed

Open the chart page →

97,040
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

10,569
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

5,833
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

7,968
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

9,300
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

8,767
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

10,536

Container images carrying it

1,464 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6
1
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
pam@1.3.1-22.el8
0:1.3.1-37.el8_10
1
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
1
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6
1
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
pam@1.3.1-5ubuntu4.6
no fix listed
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6
1
ghcr.io/caninehq/canine:latesta058034ca006
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
pam@1.3.1-14.el8
0:1.3.1-37.el8_10
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
pam@1.3.1-14.el8
0:1.3.1-37.el8_10
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
pam@1.3.1-14.el8
0:1.3.1-37.el8_10
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
pam@1.3.1-14.el8
0:1.3.1-37.el8_10
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
pam@1.3.1-14.el8
0:1.3.1-37.el8_10
1
ghcr.io/dask/dask:2024.1.0080150de7d86
pam@1.3.1-5ubuntu4.6
no fix listed
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
pam@1.3.1-5ubuntu4.3
no fix listed
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
pam@1.5.1-12.el9
0:1.5.1-25.el9_6
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
pam@1.3.1-5ubuntu4.3
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
pam@1.3.1-5ubuntu4.3
no fix listed
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.