StackRadar

CVE-2025-6020

High

Advisory

Published 17 Jun 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,382
of 17,781 indexed, latest versions
Container images
1,459
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 1,382 of 17,781 indexed charts deploy, on 1,459 images.

Affected packageAffected versionsFixed inImages
pamdeb1.1.8-1ubuntu2, 1.1.8-1ubuntu2.2, 1.1.8-3.2ubuntu2, 1.1.8-3.2ubuntu2.1+24 more1.4.0-11ubuntu2.6, 1.5.2-6+deb12u2, 1.5.3-5ubuntu5.41,334
pamrpm1.1.8-22.el7, 1.1.8-23.el7, 1.3.0-lp151.7.38, 1.3.1-4.el8+18 more0:1.1.8-23.el7_9.1, 0:1.3.1-37.el8_10, 0:1.5.1-15.el9_2.1, 0:1.5.1-24.el9_4+2 more125
OSV records
DEBIAN-CVE-2025-6020RHSA-2025:10024RHSA-2025:10027RHSA-2025:10180RHSA-2025:10357RHSA-2025:9526RLSA-2025:10027RLSA-2025:9526UBUNTU-CVE-2025-6020openSUSE-SU-2025:15256-1
Also known as
RHSA-2025:10358, RHSA-2025:10359, RHSA-2025:10361, RHSA-2025:10362, USN-7580-1

Charts affected

1,382 by stars
ChartLatestAffected imagesRadar Score
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

4,244
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

3,012
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
quay.io/devtron/postgres:14.91b594392f7cb
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.4

Open the chart page →

5,357
ilumilumOfficialVerified publisher6.7.32 of 19See more

ilum ilum 6.7.3

2 of the 19 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/postgresql:16233f361c5819
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

23,228
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

3,395
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

7,007
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
pam@1.3.1-5ubuntu4.7
no fix listed
netrisai/controller-telescope:4.6.0.00414d82948a8b2
pam@1.3.1-5ubuntu4.7
no fix listed
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
pam@1.3.1-5ubuntu4.7
no fix listed
netrisai/controller-web-session-generator:0.2.0a030a31289f4
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

30,326
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

17,245
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

8,489
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/api-gateway:latest40a4970de568
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/customers-service:latest2089811e5cc6
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/vets-service:latestd1165c94dfb3
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
platform9community/visits-service:latest8d11b50368c6
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed

Open the chart page →

41,872
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
pam@1.3.1-5ubuntu4.1
no fix listed

Open the chart page →

11,782
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
pam@1.3.1-5ubuntu4.7
no fix listed

Open the chart page →

7,268
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

6,348
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

5,630
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
pam@1.3.1-5ubuntu4.3
no fix listed
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
pam@1.3.1-5ubuntu4.3
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

30,668
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

6,457
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
pam@1.3.1-27.el8
0:1.3.1-37.el8_10

Open the chart page →

9,868
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

12,111
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

3,033
codercoderOfficialVerified publisher1.44.62 of 2See more

coder coder 1.44.6

2 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
pam@1.3.1-27.el8
0:1.3.1-37.el8_10
coderenvs/timescale:1.44.676fd37fe6830
pam@1.3.1-27.el8
0:1.3.1-37.el8_10

Open the chart page →

6,849
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

5,896
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

4,903
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

8,636
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

13,350
thehivestrangebee-helmOfficialVerified publisher1.0.63 of 7See more

thehive strangebee-helm 1.0.6

3 of the 7 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

16,210
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

14,240
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

17,263
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
pam@1.3.1-5ubuntu4.1
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
pam@1.3.1-5ubuntu4.1
no fix listed

Open the chart page →

52,919
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

5,870
dolibarrcowboysysopVerified publisher9.0.31 of 3See more

dolibarr cowboysysop 9.0.3

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

9,106
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

14,094
seafiledatamateVerified publisher0.6.03 of 6See more

seafile datamate 0.6.0

3 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

27,267
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

2,539
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
geopython/pycsw:3.0.0-beta284662ea6b78b
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
library/redis:8.4.03906b477e4b6
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

13,953
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

12,170
openctihelm-openctiVerified publisher3.0.91 of 8See more

opencti helm-opencti 3.0.9

1 of the 8 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

3,383
infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

10,428
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
pam@1.3.1-5ubuntu4.7
no fix listed

Open the chart page →

6,307
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
pam@1.3.1-22.el8
0:1.3.1-37.el8_10

Open the chart page →

4,652
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
pam@1.3.1-25.el8
0:1.3.1-37.el8_10

Open the chart page →

4,957
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
istio/proxyv2:1.14.1df69c1a7af7c
pam@1.3.1-5ubuntu4.3
no fix listed
library/python:3.7eedf63967cdb
pam@1.5.2-6
1.5.2-6+deb12u2
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
pam@1.1.8-3.2ubuntu2.1
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed

Open the chart page →

96,941
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

10,530
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

5,779
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2

Open the chart page →

7,949
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4

Open the chart page →

9,261
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6

Open the chart page →

8,722
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-6020.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

10,469

Container images carrying it

1,459 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
coderenvs/timescale:1.44.676fd37fe6830
pam@1.3.1-27.el8
0:1.3.1-37.el8_10
1
codetogether/codetogether:latest4348c8a38752
pam@1.5.1-19.el9
0:1.5.1-24.el9_4
1
collabora/code:24.04.13.2.101dc4ab83977
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
collabora/code:23.05.10.1.105299b452f7f
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
pam@1.3.1-16.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka:7.6.683dbca3efd2a
pam@1.3.1-36.el8_10
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
pam@1.3.1-36.el8_10
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka:7.4.4c0224a1adf7a
pam@1.3.1-27.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka:7.5.1dc9b972db002
pam@1.3.1-25.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
pam@1.3.1-27.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
pam@1.3.1-25.el8
0:1.3.1-37.el8_10
1
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
pam@1.3.1-36.el8_10
0:1.3.1-37.el8_10
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
pam@1.3.1-11.el8
0:1.3.1-37.el8_10
1
consensys/teku:25.4.1bf6ecd2ea716
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
1
contentsquareplatform/chproxy:v1.26.524555f22d4be
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
cortezaproject/corteza:2024.9.08eb7a26605c9
pam@1.3.1-5ubuntu4.7
no fix listed
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
countly/countly-server:25.05.4e3c238248f99
pam@1.3.1-5ubuntu4.3
no fix listed
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
pam@1.1.8-3.6ubuntu2
no fix listed
1
cribl/cribl:3.0.2762747cb6796
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
pam@1.1.8-3.2ubuntu2.3
no fix listed
1
cubejs/cubestore:v1.5.334ac523a9bab
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
daedalusproject/base_kubectl:latest6f72b5119eda
pam@1.3.1-5ubuntu4.1
no fix listed
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
dannielkil/book-frontend:latest937993927694
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
darthsim/imgproxy:v3.26476cb08c816a
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
1
daskdev/dask-notebook:1.1.0052630f5ca04
pam@1.1.8-3.6ubuntu2
no fix listed
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
pam@1.1.8-3.6ubuntu2.18.04.4
no fix listed
1
datadog/agent:6aad9994de6a7
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.4
1
datafuselabs/databend-meta:v1.2.279ba877ee6cb4d
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
datafuselabs/databend-query:v1.2.279a936843b85b4
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
datalayers/datalayers:v2.2.1017b292079239
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.6
1
datalust/seq:5.0.832-pre9c731bb207a6
pam@1.1.8-3.2ubuntu2
no fix listed
1
datalust/seq-input-gelf:3.0.441-x643de34aed5642
pam@1.3.1-5ubuntu4.3
no fix listed
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6
1
ddosify/alaz:v0.12.0ea602056d9ce
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ddosify/selfhosted_backend:3.2.93c11e3182652
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
deconzcommunity/deconz:2.29.2062de2362641
pam@1.5.2-6+deb12u1
1.5.2-6+deb12u2
1
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
pam@1.3.1-5ubuntu4.3
no fix listed
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.