StackRadar

CVE-2025-6965

Critical

Advisory

Published 15 Jul 2025In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.758
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,277
of 17,781 indexed, latest versions
Container images
1,283
deployed by those charts
Fix available
7 of 8
affected packages

SQLitePCLRaw.lib.e_sqlite3 has a vulnerable dependency on SQLite

Carried by container images the latest versions of 1,277 of 17,781 indexed charts deploy, on 1,283 images.

Affected packageAffected versionsFixed inImages
SQLitePCLRaw.lib.e_sqlite3nuget2.0.4, 2.0.6, 2.1.0, 2.1.6+1 moreno fix listed16
sqlite3deb3.8.2-1ubuntu2, 3.8.2-1ubuntu2.1, 3.8.2-1ubuntu2.2, 3.11.0-1ubuntu1+27 more3.8.2-1ubuntu2.2+esm5, 3.11.0-1ubuntu1.5+esm3, 3.22.0-1ubuntu0.7+esm2, 3.31.1-4ubuntu0.7+esm1+3 more797
sqliterpm3.7.17-8.el7, 3.7.17-8.el7_7.1, 3.26.0-3.el8, 3.26.0-4.el8_1+13 more0:3.7.17-9.el7_9.1, 0:3.26.0-20.el8_10, 0:3.34.1-8.el9_6, 0:3.34.1-9.el9_7292
sqliteapk3.41.2-r2, 3.41.2-r3, 3.44.2-r0, 3.44.2-r1+7 more3.41.2-r4, 3.44.2-r2, 3.45.3-r3, 3.48.0-r3+1 more176
nodejsrpm1:12.18.2-1.module+el8.2.0+7233+61d664c1, 1:14.16.0-2.module+el8.3.0+10180+b92e1eb6, 1:14.17.3-2.module+el8.4.0+11738+3bd42762, 1:18.18.2-1.module+el8.8.0+20407+c11d40bd+5 more1:22.16.0-2.module+el8.10.0+23338+c5a38893, 1:22.16.0-2.module+el9.6.0+23339+d3c8acfa, 1:22.16.0-2.module+el9.6.0+32322+a8b1fd0114
nodejs-packagingrpm23-3.module+el8.3.0+6519+9f98ed830:2021.06-4.module+el8.10.0+23140+4056b9506
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a45, 2.0.3-1.module+el8.3.0+6519+9f98ed83, 3.0.1-1.module+el8.8.0+19757+8ca87034, 3.0.1-1.module+el9.6.0+23146+be9976bd0:3.0.1-1.module+el8.10.0+23140+4056b950, 0:3.0.1-1.module+el9.6.0+23339+d3c8acfa4
sqlite3rpm3.28.0-lp151.2.3.13.50.3-1.12
OSV records
GHSA-2m69-gcr7-jv3qALPINE-CVE-2025-6965DEBIAN-CVE-2025-6965RHSA-2025:11802RHSA-2025:11803RHSA-2025:11992RHSA-2025:12010RHSA-2025:12349RHSA-2025:20936RLSA-2025:11802RLSA-2025:11992RLSA-2025:12010RLSA-2025:20936UBUNTU-CVE-2025-6965openSUSE-SU-2025:15368-1
Also known as
BIT-sqlite-2025-6965, RHSA-2025:12036, RHSA-2025:12521, RHSA-2025:12749, RHSA-2025:12901, RHSA-2025:12904, RHSA-2025:12905, USN-7676-1, USN-7679-1

Charts affected

1,277 by stars
ChartLatestAffected imagesRadar Score
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5

Open the chart page →

9,005
apicurioone-acre-fundVerified publisher2.3.03 of 5See more

apicurio one-acre-fund 2.3.0

3 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

18,667
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
sqlite3@3.45.1-1ubuntu2.1
3.45.1-1ubuntu2.4

Open the chart page →

6,037
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
sqlite@3.26.0-13.el8
0:3.26.0-20.el8_10

Open the chart page →

18,023
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
sqlite3@3.22.0-1
3.22.0-1ubuntu0.7+esm2
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

63,223
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
omecproject/onos-progran:1.0.05715e5648aa0
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

26,211
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2

Open the chart page →

15,702
mcord-cdn-remoteopencord0.1.62 of 2See more

mcord-cdn-remote opencord 0.1.6

2 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
woojoong/wowza:latestec230db19652
sqlite3@3.22.0-1
3.22.0-1ubuntu0.7+esm2

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

29,124
omec-control-planeopencord0.1.312 of 8See more

omec-control-plane opencord 0.1.31

2 of the 8 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
omecproject/c3po-hssdb:master-latest28a90cc26716
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
omecproject/mme-exporter:paging-latestbcc5f19fd676
sqlite3@3.22.0-1ubuntu0.2
3.22.0-1ubuntu0.7+esm2

Open the chart page →

40,715
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
sqlite3@3.22.0-1ubuntu0.2
3.22.0-1ubuntu0.7+esm2

Open the chart page →

12,927
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

38,865
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
sqlite3@3.11.0-1ubuntu1.2
3.11.0-1ubuntu1.5+esm3

Open the chart page →

12,609
sebaopencord1.0.06 of 17See more

seba opencord 1.0.0

6 of the 17 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
voltha/voltha-cli:1.6.0c4e41e92f046
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
voltha/voltha-envoy:1.6.059ab2a00f712
sqlite3@3.8.2-1ubuntu2.1
3.8.2-1ubuntu2.2+esm5
voltha/voltha-netconf:1.6.037f80524c207
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
voltha/voltha-ofagent:1.6.09ee8c1f4428c
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
voltha/voltha-voltha:1.6.0ff596b62de59
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

93,855
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2
voltha/voltha-onos:5.1.8e038acb950d3
sqlite3@3.22.0-1ubuntu0.5
3.22.0-1ubuntu0.7+esm2

Open the chart page →

41,044
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

10,978
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10

Open the chart page →

7,459
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

11,796
alquimia-studioopenshift0.2.01 of 1See more

alquimia-studio openshift 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
alquimiaai/studio:certification38a1f0341982
nodejs@1:20.19.5-1.module+el9.6.0+23523+a4f53f09
nodejs-nodemon@3.0.1-1.module+el9.6.0+23146+be9976bd
1:22.16.0-2.module+el9.6.0+23339+d3c8acfa
0:3.0.1-1.module+el9.6.0+23339+d3c8acfa

Open the chart page →

2,370
bpjstk-serviceopenshift1.0.03 of 6See more

bpjstk-service openshift 1.0.0

3 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
andrianrf/backoffice-be:latest6036614803d4
sqlite@3.34.1-6.el9_1
0:3.34.1-8.el9_6
andrianrf/iso-server:latest7da47f525c7d
sqlite@3.34.1-6.el9_1
0:3.34.1-8.el9_6

Open the chart page →

34,671
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

7,519
chatbot-ai-sampleopenshift0.1.62 of 4See more

chatbot-ai-sample openshift 0.1.6

2 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/ai-lab/llamacpp_python:latest70d138997acd
nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f127
sqlite@3.34.1-7.el9_3
1:22.16.0-2.module+el9.6.0+23339+d3c8acfa
0:3.34.1-8.el9_6
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
nodejs@1:20.12.2-2.module+el9.4.0+21731+46b5b8a7
sqlite@3.34.1-7.el9_3
1:22.16.0-2.module+el9.6.0+23339+d3c8acfa
0:3.34.1-8.el9_6

Open the chart page →

18,922
exporteropenshift1.0.473 of 3See more

exporter openshift 1.0.47

3 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6

Open the chart page →

13,000
flomesh-consoleopenshift0.70.0-30-ubi82 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

2 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10

Open the chart page →

9,968
fsmopenshift0.1.8-ubi.66 of 6See more

fsm openshift 0.1.8-ubi.6

6 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

16,556
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
sqlite@3.26.0-13.el8
0:3.26.0-20.el8_10
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
sqlite@3.26.0-13.el8
0:3.26.0-20.el8_10

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi87 of 7See more

osm-edge openshift 1.2.1-ubi8

7 of the 7 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10

Open the chart page →

19,455
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
sqlite@3.34.1-6.el9_1
0:3.34.1-8.el9_6

Open the chart page →

8,599
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

13,100
openshift-integration-operatoropenshift-integration-operatorVerified publisher0.8.21 of 2See more

openshift-integration-operator openshift-integration-operator 0.8.2

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6

Open the chart page →

2,045
open-vpnopenvpn0.0.11 of 1See more

open-vpn openvpn 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2

Open the chart page →

15,592
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2

Open the chart page →

36,215
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10

Open the chart page →

5,554
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
sqlite3@3.8.2-1ubuntu2.1
3.8.2-1ubuntu2.2+esm5

Open the chart page →

26,339
hiveopstty0.1.81 of 4See more

hive opstty 0.1.8

1 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

4,523
grrosdfir-infrastructureVerified publisher1.0.32 of 5See more

grr osdfir-infrastructure 1.0.3

2 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/mariadb:11.3.2e101f9db3191
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

10,896
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.02 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

2 of the 40 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/mariadb:11.3.2e101f9db3191
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

71,208
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
sqlite@3.44.2-r0
3.44.2-r2

Open the chart page →

5,137
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
sqlite@3.45.3-r1
3.45.3-r3

Open the chart page →

5,411
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

12,350
ungatep2p-avs0.1.02 of 3See more

ungate p2p-avs 0.1.0

2 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
sqlite3@3.40.1-2
3.40.1-2+deb12u2
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

27,373
p4p40.1.04 of 7See more

p4 p4 0.1.0

4 of the 7 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/mongo:5.0-focal5e15a3f014ed
sqlite3@3.31.1-4ubuntu0.7
3.31.1-4ubuntu0.7+esm1
library/rabbitmq:3.11-managementc3f70098e01d
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
mastercloudapps/server:v2.23f3d24dfe2686
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
mastercloudapps/weatherservice:v1.23de859d29c116
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10

Open the chart page →

27,537
myappp4-helm0.1.01 of 6See more

myapp p4-helm 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2

Open the chart page →

19,720
pagespages1.0.02 of 3See more

pages pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
flyway/flyway:6.4.422d97ceb0c47
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2

Open the chart page →

20,190

Container images carrying it

1,283 by charts deploying them

A fixed version is listed for 7 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
sqlite@3.26.0-15.el8
0:3.26.0-20.el8_10
3
alpine/git:2.47.2062a01ad7a0e
sqlite@3.48.0-r2
3.48.0-r3
2
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
sqlite@3.34.1-8.el9_6
0:3.34.1-9.el9_7
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
sqlite3@3.45.1-1ubuntu2
3.45.1-1ubuntu2.4
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
chatwoot/chatwoot:v3.1.0d530ab8c1753
sqlite@3.41.2-r2
3.41.2-r4
2
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
2
confluentinc/cp-zookeeper:latest7610a50b13e7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
2
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
2
eqalpha/keydb:latest6537505c4235
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
hookiesolutions/webhookie:latest0629694246ba
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
sqlite3@3.31.1-4ubuntu0.3
3.31.1-4ubuntu0.7+esm1
2
interlayhq/interbtc:latesta66d0e35e70f
sqlite3@3.31.1-4ubuntu0.7
3.31.1-4ubuntu0.7+esm1
2
istio/kubectl:1.5.10dbb7726d1bf0
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
2
istio/proxyv2:1.10.3a78b7a165744
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
langgenius/dify-sandbox:0.2.009b7e8705673
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
library/cassandra:3.11.65aa8400b4b3b
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
2
library/cassandra:4.1.37cbcec0086ac
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
2
library/elasticsearch:7.17.35e6ac15bf6a5
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
2
library/mariadb:10.8.30abf60f81588
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5
2
library/mariadb:10.10334b315c10e5
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
2
library/mariadb:11.3.2e101f9db3191
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
2
library/mongo:5.041108d183e97
sqlite3@3.31.1-4ubuntu0.7
3.31.1-4ubuntu0.7+esm1
2
library/mongo:4.2.358b25d51baa1
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2
2
library/phpmyadmin:5.2.16e75aa8f767c
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
2
library/postgres:16.109f23e02d766
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
library/postgres:16.24aea012537ed
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
library/postgres:16.4e62fbf9d3e2b
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
2
library/python:3.7eedf63967cdb
sqlite3@3.40.1-2
3.40.1-2+deb12u2
2
library/python:3.7-alpinef3d31c8677d0
sqlite@3.41.2-r2
3.41.2-r4
2
library/rabbitmq:3.13.6-management-alpine611107e29cce
sqlite@3.45.3-r1
3.45.3-r3
2
library/rabbitmq:4.1.0-management935b3f84c1e4
sqlite3@3.45.1-1ubuntu2.3
3.45.1-1ubuntu2.4
2
library/rabbitmq:3.12.1-managementf020c06da226
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5
2
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
sqlite@3.45.3-r1
3.45.3-r3
2
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
sqlite3@3.11.0-1ubuntu1.1
3.11.0-1ubuntu1.5+esm3
2
lncm/bitcoind:v27.0324fec72192e
sqlite@3.44.2-r0
3.44.2-r2
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.