StackRadar

CVE-2025-68973

High

Advisory

Published 28 Dec 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,978
of 17,790 indexed, latest versions
Container images
2,258
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: gnupg2 security update

Carried by container images the latest versions of 1,978 of 17,790 indexed charts deploy, on 2,258 images.

Affected packageAffected versionsFixed inImages
gnupg2deb2.1.11-6ubuntu2.1, 2.2.4-1ubuntu1, 2.2.4-1ubuntu1.1, 2.2.4-1ubuntu1.2+23 more2.1.11-6ubuntu2.1+esm3, 2.2.4-1ubuntu1.6+esm2, 2.2.19-3ubuntu2.5+esm1, 2.2.27-2+deb11u3+5 more1,834
gnupg2rpm2.0.22-5.el7_5, 2.2.9-1.el8, 2.2.20-2.el8, 2.2.20-3.el8_6+2 more0:2.0.22-5.el7_9.1, 0:2.2.20-4.el8_10, 0:2.3.3-5.el9_7329
gnupgdeb1.4.16-1ubuntu2.1, 1.4.16-1ubuntu2.4, 1.4.16-1ubuntu2.6, 1.4.20-1ubuntu3.1+2 more1.4.16-1ubuntu2.6+esm2, 1.4.20-1ubuntu3.3+esm376
gnupgapk2.4.5-r0, 2.4.7-r02.4.9-r015
gpg2rpm2.2.5-lp151.6.3.1, 2.4.4-150600.3.9.12.4.4-150600.3.12.1, 2.5.16-1.15
OSV records
ALPINE-CVE-2025-68973DEBIAN-CVE-2025-68973RHSA-2026:0719RHSA-2026:0728RHSA-2026:1677RLSA-2026:0719RLSA-2026:0728UBUNTU-CVE-2025-68973DLA-4437-1openSUSE-SU-2026:10001-1SUSE-SU-2026:0215-1
Also known as
RHSA-2026:0935, RHSA-2026:0974, RHSA-2026:1014, RHSA-2026:1229, RHSA-2026:1230, RHSA-2026:1468, RHSA-2026:1705, USN-7946-1, USN-7946-2

Charts affected

1,978 by stars
ChartLatestAffected imagesRadar Score
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

3,050
passboltcnieg1.1.171 of 2See more

passbolt cnieg 1.1.17

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
gnupg2@2.2.27-2
2.2.27-2+deb11u3

Open the chart page →

3,544
codercoderOfficialVerified publisher1.44.62 of 2See more

coder coder 1.44.6

2 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
coderenvs/timescale:1.44.676fd37fe6830
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

7,183
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

5,943
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5

Open the chart page →

4,954
redisinsightheywood8-helm-chartsVerified publisher0.4.51 of 1See more

redisinsight heywood8-helm-charts 0.4.5

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
heywood8/redisinsight:2.28.00bc9ab313d37
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

2,828
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4

Open the chart page →

8,692
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

13,523
servarrservarr1.0.22 of 10See more

servarr servarr 1.0.2

2 of the 10 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.8.1305a9734d7e83
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/flaresolverr/flaresolverr:v3.3.16088412db1051
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

14,231
rekorsigstoreVerified publisher1.8.61 of 9See more

rekor sigstore 1.8.6

1 of the 9 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

5,373
thehivestrangebee-helmOfficialVerified publisher1.0.73 of 7See more

thehive strangebee-helm 1.0.7

3 of the 7 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

16,220
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

14,327
aad-pod-identityaad-pod-identity4.1.181 of 2See more

aad-pod-identity aad-pod-identity 4.1.18

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/azure/aad-pod-identity/nmi:v1.8.1777788bf38938
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

2,858
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
mide/minecraft-overviewer:latest4eee0dcb715f
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

3,402
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

17,413
fadicetic0.3.13 of 25See more

fadi cetic 0.3.1

3 of the 25 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
gnupg2@2.2.19-3ubuntu2
2.2.19-3ubuntu2.5+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
gnupg2@2.2.19-3ubuntu2
2.2.19-3ubuntu2.5+esm1
library/adminer:4.8.1-standalone34d37131366c
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

53,052
headwind-mdmchristianhuthVerified publisher5.10.21 of 2See more

headwind-mdm christianhuth 5.10.2

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

5,929
dolibarrcowboysysopVerified publisher9.0.31 of 3See more

dolibarr cowboysysop 9.0.3

1 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

9,208
daskhubdask2024.1.13 of 9See more

daskhub dask 2024.1.1

3 of the 9 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.06 of 6See more

seafile datamate 0.6.0

6 of the 6 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.1-debian-11-r29cfd2df1294d
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/os-shell:11-debian-11-r968643af4facff
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
datamate/seafile-professional:11.0.202dd66b722464
gnupg2@2.2.27-3ubuntu2.4
2.2.27-3ubuntu2.5

Open the chart page →

27,426
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
gnupg2@2.4.4-2ubuntu17
2.4.4-2ubuntu17.4

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
geopython/pycsw:3.0.0-beta284662ea6b78b
gnupg2@2.2.40-1.1+deb12u1
2.2.40-1.1+deb12u2
library/redis:8.4.03906b477e4b6
gnupg2@2.2.40-1.1+deb12u1
2.2.40-1.1+deb12u2

Open the chart page →

14,112
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

12,359
openctihelm-openctiVerified publisher3.0.91 of 8See more

opencti helm-opencti 3.0.9

1 of the 8 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

3,407
infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

10,522
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
gnupg2@2.2.19-3ubuntu2.5
2.2.19-3ubuntu2.5+esm1

Open the chart page →

6,350
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

4,663
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

4,956
kubeflowkubeflow1.6.27 of 45See more

kubeflow kubeflow 1.6.2

7 of the 45 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
istio/proxyv2:1.14.1df69c1a7af7c
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
library/python:3.7eedf63967cdb
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2

Open the chart page →

97,217
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1

Open the chart page →

10,573
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

5,849
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

7,997
open5gsopen5gsVerified publisher2.3.43 of 5See more

open5gs open5gs 2.3.4

3 of the 5 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
gradiant/open5gs-dbctl:0.10.3332031245fce
gnupg2@2.4.4-2ubuntu17
2.4.4-2ubuntu17.4
gradiant/open5gs-webui:2.7.5fbd10c017541
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

9,305
clustersecretpatrungel0.2.01 of 1See more

clustersecret patrungel 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
flag5/clustersecret:0.0.94ad5748bfcc6
gnupg2@2.2.27-2
2.2.27-2+deb11u3

Open the chart page →

1,841
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5

Open the chart page →

8,777
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1

Open the chart page →

10,563
taigarc-helm-charts0.1.01 of 7See more

taiga rc-helm-charts 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
taigaio/taiga-back:6.4.29f97323cc150
gnupg2@2.2.27-2
2.2.27-2+deb11u3

Open the chart page →

7,256
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
gnupg2@2.0.22-5.el7_5
0:2.0.22-5.el7_9.1
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
gnupg2@2.0.22-5.el7_5
0:2.0.22-5.el7_9.1

Open the chart page →

4,526
piholesavepointsamVerified publisher0.2.01 of 1See more

pihole savepointsam 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
pihole/pihole:2023.05.0b83258064f54
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

1,048
k8s-telegram-sendertelegram-senderVerified publisher0.0.11 of 1See more

k8s-telegram-sender telegram-sender 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
danuk/telegram-sender:0.0.1026560388070
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

3,048
uffizzi-appuffizzi-app1.3.02 of 14See more

uffizzi-app uffizzi-app 1.3.0

2 of the 14 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
uffizzi/app:latest66e9e3937c60
gnupg2@2.2.27-2+deb11u1
2.2.27-2+deb11u3
uffizzi/controller:latest0344805f267b
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

19,434
reposilitevolker-raschekVerified publisher1.0.01 of 1See more

reposilite volker-raschek 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.5.264128c2d7a6ba
gnupg2@2.4.4-2ubuntu17.3
2.4.4-2ubuntu17.4

Open the chart page →

3,002
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
gnupg@1.4.20-1ubuntu3.1
1.4.20-1ubuntu3.3+esm3

Open the chart page →

13,578
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

9,775
eshoponabpabp-charts1.0.012 of 15See more

eshoponabp abp-charts 1.0.0

12 of the 15 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
gnupg2@2.2.4-1ubuntu1.6
2.2.4-1ubuntu1.6+esm2
library/postgres:14.13162a6ead070
gnupg2@2.2.27-2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
ghcr.io/volosoft/eshoponabp/service-payment:1.0.02ca91145099c
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

19,812
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5

Open the chart page →

8,254
alerta-webalerta-webVerified publisher0.1.121 of 2See more

alerta-web alerta-web 0.1.12

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.2.0-debian-11-r113e65a6b89e38
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

3,569
limesurveyarea-42Verified publisher0.3.951 of 2See more

limesurvey area-42 0.3.95

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2

Open the chart page →

4,775
auto-deploy-appav1o-chartsVerified publisher0.15.41 of 1See more

auto-deploy-app av1o-charts 0.15.4

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
gnupg@1.4.20-1ubuntu3.1
1.4.20-1ubuntu3.3+esm3

Open the chart page →

11,015
openshift-consoleav1o-chartsVerified publisher0.3.61 of 1See more

openshift-console av1o-charts 0.3.6

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
gnupg2@2.2.9-1.el8
0:2.2.20-4.el8_10

Open the chart page →

9,060

Container images carrying it

2,258 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
gnupg2@2.2.27-2+deb11u1
2.2.27-2+deb11u3
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/ctron/kubectl:1.25e37d61b5277c
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/cunningpike/fediblockhole:0.4.22abc5f0350dc
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
ghcr.io/dask/dask:2024.1.0080150de7d86
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1
1
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
gnupg2@2.3.3-4.el9
0:2.3.3-5.el9_7
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
gnupg2@2.4.7-21+b3
2.4.7-21+deb13u1
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
gnupg2@2.2.27-2
2.2.27-2+deb11u3
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
gnupg2@2.4.4-2ubuntu17
2.4.4-2ubuntu17.4
1
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
gnupg2@2.2.27-2
2.2.27-2+deb11u3
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
gnupg2@2.3.3-2.el9_0
0:2.3.3-5.el9_7
1
ghcr.io/ducksify/pgdump-to-s3:latestc42c0946bd0f
gnupg2@2.2.27-2+deb11u1
2.2.27-2+deb11u3
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
ghcr.io/eshepelyuk/dckr/cmak-3.0.0.6:1.2.090a34412c6b5
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.