StackRadar

CVE-2025-6141

Medium

Advisory

Published 16 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,354
of 17,790 indexed, latest versions
Container images
2,327
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2025-6141 affecting package ncurses for versions less than 6.4-3

Carried by container images the latest versions of 2,354 of 17,790 indexed charts deploy, on 2,327 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+12 more5.9+20140118-1ubuntu1+esm7, 6.0+20160213-1ubuntu1+esm7, 6.1-1ubuntu1.18.04.1+esm4, 6.2-0ubuntu2.1+esm2+2 more2,326
ncursesrpm6.4-2.azl36.4-31
OSV records
DEBIAN-CVE-2025-6141UBUNTU-CVE-2025-6141AZL-64139
Also known as
USN-8709-1

Charts affected

2,354 by stars
ChartLatestAffected imagesRadar Score
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
ncurses@6.4-4
no fix listed

Open the chart page →

2,684
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
ncurses@6.5+20250216-2
no fix listed

Open the chart page →

1,849
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1+esm4
yandex/clickhouse-server:21.3.204eccfffb01d7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm2

Open the chart page →

9,256
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
ncurses@6.3-2ubuntu0.2
6.3-2ubuntu0.3

Open the chart page →

7,929

Container images carrying it

2,327 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.27.098f8ec75657d
ncurses@6.4-4
no fix listed
2
library/nginx:1.29.49dd288848f44
ncurses@6.5+20250216-2
no fix listed
2
library/phpmyadmin:5.2.16e75aa8f767c
ncurses@6.4-4
no fix listed
2
library/postgres:17-bookworm051f7b7b3abd
ncurses@6.4-4
no fix listed
2
library/postgres:16.109f23e02d766
ncurses@6.4-4
no fix listed
2
library/postgres:18.11090bc3a8ccf
ncurses@6.5+20250216-2
no fix listed
2
library/postgres:16.24aea012537ed
ncurses@6.4-4
no fix listed
2
library/postgres:18.06f3e42ad37de
ncurses@6.5+20250216-2
no fix listed
2
library/postgres:16.4e62fbf9d3e2b
ncurses@6.4-4
no fix listed
2
library/python:3.14-slim:3-slimcad9a2c87176
ncurses@6.5+20250216-2
no fix listed
2
library/python:3.7eedf63967cdb
ncurses@6.4-4
no fix listed
2
library/rabbitmq:4.1.0-management935b3f84c1e4
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.2
2
library/rabbitmq:3.12.1-managementf020c06da226
ncurses@6.3-2ubuntu0.1
6.3-2ubuntu0.3
2
library/redis:7.2.3a7cee7c8178f
ncurses@6.4-4
no fix listed
2
library/redis:8.2.2f0957bcaa75f
ncurses@6.4-4
no fix listed
2
library/redmine:6.1.3-trixief474a901faec
ncurses@6.5+20250216-2
no fix listed
2
library/ubuntu:16.04:xenial1f1a2d56de1d
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm7
2
library/wordpress:6.8.3-apache:6.8-apache30bff39330d1
ncurses@6.5+20250216-2
no fix listed
2
library/zookeeper:3.9.5f258365d4882
ncurses@6.3-2ubuntu0.2
6.3-2ubuntu0.3
2
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm7
2
localstack/localstack-pro:latest4aef81c53168
ncurses@6.5+20250216-2
no fix listed
2
locustio/locust:2.32.2a0d4b88e42c1
ncurses@6.4-4
no fix listed
2
louislam/uptime-kuma:2.3.29aeb4e51d038
ncurses@6.4-4
no fix listed
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
ncurses@6.4-4
no fix listed
2
mbentley/omada-controller:4.3f4e682274bed
ncurses@6.1-1ubuntu1.18.04.1
6.1-1ubuntu1.18.04.1+esm4
2
meshery/meshery:stable-latest44b64ee128fb
ncurses@6.4-4
no fix listed
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm2
2
moreillon/group-manager-front:v3.3.1c9f85db3baa5
ncurses@6.4-4
no fix listed
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
ncurses@6.4-4
no fix listed
2
moreillon/user-manager-front:v5.0.3b067dbbbb6af
ncurses@6.4-4
no fix listed
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
ncurses@6.1-1ubuntu1
6.1-1ubuntu1.18.04.1+esm4
2
nginxinc/nginx-unprivileged:stablecb92301e719d
ncurses@6.5+20250216-2
no fix listed
2
nutanix/nai-jobs:v2.8.09c373718e1b1
ncurses@6.5+20250216-2
no fix listed
2
obolnetwork/charon:v1.10.0278c7e2897b6
ncurses@6.5+20250216-2
no fix listed
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm2
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm7
2
opea/embedding-tei:1.05c9639de61c1
ncurses@6.4-4
no fix listed
2
opea/reranking-tei:1.0e48613afb191
ncurses@6.4-4
no fix listed
2
opea/retriever-redis:1.0eb746b263705
ncurses@6.4-4
no fix listed
2
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
ncurses@6.4-4
no fix listed
2
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
ncurses@6.4-4
no fix listed
2
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
ncurses@6.4-4
no fix listed
2
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
ncurses@6.4-4
no fix listed
2
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
ncurses@6.4-4
no fix listed
2
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
ncurses@6.4-4
no fix listed
2
opencsghq/postgres:15.19b98600564e07
ncurses@6.5+20250216-2
no fix listed
2
opendatacube/ows:latest668cbb41473c
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.2
2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
ncurses@6.4-4
no fix listed
2
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
ncurses@6.3-2
6.3-2ubuntu0.3
2
openebs/node-disk-operator:2.1.06afe2123c457
ncurses@6.3-2
6.3-2ubuntu0.3
2

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.