StackRadar

CVE-2025-68192

Critical

Advisory

Published 16 Dec 2025In the index since 6 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
114
of 17,805 indexed, latest versions
Container images
121
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 114 of 17,805 indexed charts deploy, on 121 images.

Affected packageAffected versionsFixed inImages
linuxdeb4.15.0-38.41, 4.15.0-46.49, 4.15.0-50.54, 4.15.0-74.84+73 more5.15.0-173.183, 6.8.0-106.106, 6.17.0-14.14121
OSV records
UBUNTU-CVE-2025-68192
Also known as
USN-8029-1, USN-8095-1, USN-8096-1

Charts affected

114 by stars
ChartLatestAffected imagesRadar Score
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
linux@5.4.0-91.102
no fix listed
milvusdb/milvus:v2.2.13a3a55e1c1497
linux@5.4.0-131.147
no fix listed

Open the chart page →

175,656
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
linux@6.8.0-88.89
6.8.0-106.106

Open the chart page →

74,641
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
linux@4.15.0-126.129
no fix listed

Open the chart page →

81,408
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
linux@5.4.0-131.147
no fix listed

Open the chart page →

86,981
stackstorm-hastackstormVerified publisher1.1.011 of 17See more

stackstorm-ha stackstorm 1.1.0

11 of the 17 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
linux@5.4.0-169.187
no fix listed
stackstorm/st2api:3.86f56d239d280
linux@5.4.0-169.187
no fix listed
stackstorm/st2auth:3.833ecfda16608
linux@5.4.0-169.187
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
linux@5.4.0-169.187
no fix listed
stackstorm/st2notifier:3.8f190a6212195
linux@5.4.0-169.187
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
linux@5.4.0-169.187
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
linux@5.4.0-169.187
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
linux@5.4.0-169.187
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
linux@5.4.0-169.187
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
linux@5.4.0-169.187
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
linux@5.4.0-169.187
no fix listed

Open the chart page →

738,783
fadicetic0.3.11 of 25See more

fadi cetic 0.3.1

1 of the 25 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
linux@5.4.0-62.70
no fix listed

Open the chart page →

131,978
seafiledatamateVerified publisher0.6.01 of 6See more

seafile datamate 0.6.0

1 of the 6 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
datamate/seafile-professional:11.0.202dd66b722464
linux@5.15.0-153.163
5.15.0-173.183

Open the chart page →

77,598
kubeflowkubeflow1.6.21 of 45See more

kubeflow kubeflow 1.6.2

1 of the 45 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
linux@4.15.0-144.148
no fix listed

Open the chart page →

161,742
backup-zenbzen0.1.41 of 1See more

backup-zen bzen 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
rezachalak/bzen-mongo:1.0.034f694325191
linux@5.4.0-156.173
no fix listed

Open the chart page →

68,968
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
linux@5.4.0-216.236
no fix listed

Open the chart page →

58,923
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
linux@5.4.0-81.91
no fix listed

Open the chart page →

100,496
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
linux@5.4.0-182.202
no fix listed

Open the chart page →

72,064
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
linux@4.15.0-135.139
no fix listed

Open the chart page →

83,467
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
linux@4.15.0-188.199
no fix listed

Open the chart page →

72,287
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
linux@5.4.0-80.90
no fix listed

Open the chart page →

89,690
pysequilabiodatageeks0.1.31 of 7See more

pysequila biodatageeks 0.1.3

1 of the 7 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.9.1ec78bdae0fed
linux@4.15.0-96.97
no fix listed

Open the chart page →

87,544
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
linux@5.4.0-125.141
no fix listed

Open the chart page →

77,349
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
linux@5.15.0-118.128
5.15.0-173.183

Open the chart page →

73,459
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
linux@6.8.0-57.59
6.8.0-106.106

Open the chart page →

69,241
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
linux@4.15.0-88.88
no fix listed

Open the chart page →

80,210
games-on-whalesgeek-cookbookVerified publisher1.8.21 of 7See more

games-on-whales geek-cookbook 1.8.2

1 of the 7 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
linux@5.4.0-81.91
no fix listed

Open the chart page →

111,317
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
linux@5.4.0-121.137
no fix listed

Open the chart page →

86,725
tdarrgeek-cookbookVerified publisher4.6.21 of 2See more

tdarr geek-cookbook 4.6.2

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
linux@5.4.0-109.123
no fix listed

Open the chart page →

103,752
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
linux@5.15.0-143.153
5.15.0-173.183

Open the chart page →

63,922
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
linux@4.15.0-147.151
no fix listed

Open the chart page →

74,740
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
linux@4.15.0-147.151
no fix listed

Open the chart page →

74,815
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
linux@4.15.0-147.151
no fix listed

Open the chart page →

74,761
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
linux@4.15.0-147.151
no fix listed

Open the chart page →

74,761
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
linux@4.15.0-147.151
no fix listed

Open the chart page →

75,013
opennebulakvaps2.1.12 of 9See more

opennebula kvaps 2.1.1

2 of the 9 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
linux@5.4.0-80.90
no fix listed
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
linux@5.4.0-80.90
no fix listed

Open the chart page →

267,067
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
linux@6.17.0-7.7
6.17.0-14.14

Open the chart page →

35,192
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
linux@5.15.0-153.163
5.15.0-173.183

Open the chart page →

94,954
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
linux@5.15.0-124.134
5.15.0-173.183

Open the chart page →

67,778
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
linux@5.4.0-131.147
no fix listed
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
linux@5.4.0-131.147
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
linux@5.4.0-131.147
no fix listed

Open the chart page →

250,952
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
linux@5.4.0-74.83
no fix listed

Open the chart page →

102,633
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
linux@5.4.0-214.234
no fix listed

Open the chart page →

56,254
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
linux@4.15.0-101.102
no fix listed

Open the chart page →

78,772
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
linux@5.4.0-67.75
no fix listed

Open the chart page →

104,003
data-ingestion-serviceakto0.1.61 of 1See more

data-ingestion-service akto 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-servicedigest-pinned213aded7adc5
linux@6.8.0-94.96
6.8.0-106.106

Open the chart page →

58,230
games-on-whalesangelnu2.0.01 of 7See more

games-on-whales angelnu 2.0.0

1 of the 7 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
linux@5.4.0-81.91
no fix listed

Open the chart page →

118,218
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
linux@5.15.0-91.101
5.15.0-173.183

Open the chart page →

88,229
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
linux@5.4.0-144.161
no fix listed

Open the chart page →

77,375
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
linux@5.4.0-136.153
no fix listed

Open the chart page →

74,928
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
linux@4.15.0-144.148
no fix listed

Open the chart page →

87,392
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
linux@6.8.0-60.63
6.8.0-106.106

Open the chart page →

73,182
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
linux@4.15.0-213.224
no fix listed

Open the chart page →

66,835
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
linux@5.4.0-65.73
no fix listed

Open the chart page →

91,190
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
cloudve/janis-terminal:latestaf56e77ca587
linux@4.15.0-106.107
no fix listed

Open the chart page →

80,967
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
linux@6.8.0-90.91
6.8.0-106.106

Open the chart page →

57,863
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2025-68192.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
linux@4.15.0-50.54
no fix listed

Open the chart page →

98,005

Container images carrying it

121 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
linux@5.4.0-176.196
no fix listed
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
linux@5.15.0-134.145
5.15.0-173.183
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
linux@4.15.0-204.215
no fix listed
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
linux@5.4.0-144.161
no fix listed
1
xeladock/mysql_dns:latest4baf531453f1
linux@5.15.0-25.25
5.15.0-173.183
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
linux@4.15.0-88.88
no fix listed
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
linux@6.8.0-90.91
6.8.0-106.106
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
linux@5.4.0-110.124
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
linux@5.4.0-214.234
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
linux@5.4.0-80.90
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
linux@5.4.0-80.90
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
linux@6.8.0-57.59
6.8.0-106.106
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
linux@5.4.0-121.137
no fix listed
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
linux@5.4.0-131.147
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
linux@5.4.0-131.147
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
linux@5.4.0-131.147
no fix listed
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
linux@5.4.0-200.220
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
linux@5.4.0-200.220
no fix listed
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
linux@6.8.0-100.100
6.8.0-106.106
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
linux@4.15.0-191.202
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
linux@5.4.0-67.75
no fix listed
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.