StackRadar

CVE-2025-6965

Critical

Advisory

Published 15 Jul 2025In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.725
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,281
of 17,787 indexed, latest versions
Container images
1,286
deployed by those charts
Fix available
7 of 8
affected packages

SQLitePCLRaw.lib.e_sqlite3 has a vulnerable dependency on SQLite

Carried by container images the latest versions of 1,281 of 17,787 indexed charts deploy, on 1,286 images.

Affected packageAffected versionsFixed inImages
SQLitePCLRaw.lib.e_sqlite3nuget2.0.4, 2.0.6, 2.1.0, 2.1.6+1 moreno fix listed16
sqlite3deb3.8.2-1ubuntu2, 3.8.2-1ubuntu2.1, 3.8.2-1ubuntu2.2, 3.11.0-1ubuntu1+27 more3.8.2-1ubuntu2.2+esm5, 3.11.0-1ubuntu1.5+esm3, 3.22.0-1ubuntu0.7+esm2, 3.31.1-4ubuntu0.7+esm1+3 more798
sqliterpm3.7.17-8.el7, 3.7.17-8.el7_7.1, 3.26.0-3.el8, 3.26.0-4.el8_1+13 more0:3.7.17-9.el7_9.1, 0:3.26.0-20.el8_10, 0:3.34.1-8.el9_6, 0:3.34.1-9.el9_7294
sqliteapk3.41.2-r2, 3.41.2-r3, 3.44.2-r0, 3.44.2-r1+7 more3.41.2-r4, 3.44.2-r2, 3.45.3-r3, 3.48.0-r3+1 more176
nodejsrpm1:12.18.2-1.module+el8.2.0+7233+61d664c1, 1:14.16.0-2.module+el8.3.0+10180+b92e1eb6, 1:14.17.3-2.module+el8.4.0+11738+3bd42762, 1:18.18.2-1.module+el8.8.0+20407+c11d40bd+5 more1:22.16.0-2.module+el8.10.0+23338+c5a38893, 1:22.16.0-2.module+el9.6.0+23339+d3c8acfa, 1:22.16.0-2.module+el9.6.0+32322+a8b1fd0114
nodejs-packagingrpm23-3.module+el8.3.0+6519+9f98ed830:2021.06-4.module+el8.10.0+23140+4056b9506
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a45, 2.0.3-1.module+el8.3.0+6519+9f98ed83, 3.0.1-1.module+el8.8.0+19757+8ca87034, 3.0.1-1.module+el9.6.0+23146+be9976bd0:3.0.1-1.module+el8.10.0+23140+4056b950, 0:3.0.1-1.module+el9.6.0+23339+d3c8acfa4
sqlite3rpm3.28.0-lp151.2.3.13.50.3-1.12
OSV records
GHSA-2m69-gcr7-jv3qALPINE-CVE-2025-6965DEBIAN-CVE-2025-6965RHSA-2025:11802RHSA-2025:11803RHSA-2025:11992RHSA-2025:12010RHSA-2025:12349RHSA-2025:20936RLSA-2025:11802RLSA-2025:11992RLSA-2025:12010RLSA-2025:20936UBUNTU-CVE-2025-6965openSUSE-SU-2025:15368-1
Also known as
BIT-sqlite-2025-6965, RHSA-2025:12036, RHSA-2025:12521, RHSA-2025:12749, RHSA-2025:12901, RHSA-2025:12904, RHSA-2025:12905, USN-7676-1, USN-7679-1

Charts affected

1,281 by stars
ChartLatestAffected imagesRadar Score
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

8,510
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5

Open the chart page →

14,276
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1

Open the chart page →

11,831
tbmq-clustertbmq-helm-chartOfficialVerified publisher2.1.01 of 3See more

tbmq-cluster tbmq-helm-chart 2.1.0

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
thingsboard/toolbox:1.13.01bd61a0da6d3
sqlite@3.41.2-r3
3.41.2-r4

Open the chart page →

3,555
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
sqlite3@3.31.1-4ubuntu0.7
3.31.1-4ubuntu0.7+esm1

Open the chart page →

7,333
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1

Open the chart page →

6,386
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1

Open the chart page →

30,811
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

6,484
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

9,868
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
sqlite3@3.31.1-4ubuntu0.6
3.31.1-4ubuntu0.7+esm1

Open the chart page →

12,163
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

3,039
codercoderOfficialVerified publisher1.44.62 of 2See more

coder coder 1.44.6

2 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
coderenvs/timescale:1.44.676fd37fe6830
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

6,847
convoyconvoyVerified publisher3.7.131 of 3See more

convoy convoy 3.7.13

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

5,915
emqx-operatoremqx-operator2.3.21 of 2See more

emqx-operator emqx-operator 2.3.2

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
alpine/k8s:1.31.49c4976d47656
sqlite@3.47.1-r0
3.48.0-r3

Open the chart page →

4,532
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5

Open the chart page →

4,951
invoiceninjainvoiceninjaVerified publisher0.10.21 of 5See more

invoiceninja invoiceninja 0.10.2

1 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
invoiceninja/invoiceninja:5.6.241437916dee01
sqlite@3.41.2-r2
3.41.2-r4

Open the chart page →

2,709
jellyfinloeken-at-homeVerified publisher10.11.81 of 1See more

jellyfin loeken-at-home 10.11.8

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
loeken/jellyfin:10.11.87efbc24e47b0
SQLitePCLRaw.lib.e_sqlite3@2.1.10
no fix listed

Open the chart page →

882
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
sqlite3@3.45.1-1ubuntu2.1
3.45.1-1ubuntu2.4

Open the chart page →

8,685
nfs-serverobeoneVerified publisher1.1.61 of 1See more

nfs-server obeone 1.1.6

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/obeone/nfs-server:2.2.3932f4fa9d0f1
sqlite@3.41.2-r3
3.41.2-r4

Open the chart page →

228
servarrservarr1.0.26 of 10See more

servarr servarr 1.0.2

6 of the 10 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
dinutac/jinja2docker:2.1.89340dde8a8a4
sqlite@3.44.2-r0
3.44.2-r2
jellyfin/jellyfin:10.8.1305a9734d7e83
SQLitePCLRaw.lib.e_sqlite3@2.1.0
no fix listed
ghcr.io/onedr0p/prowlarr-develop:1.14.0.4286c77d84ebf7a6
sqlite@3.44.2-r0
3.44.2-r2
ghcr.io/onedr0p/qbittorrent:4.6.3a4ad890e8c4a
sqlite@3.44.2-r0
3.44.2-r2
ghcr.io/onedr0p/radarr:5.3.6.86128d299e59fce7
sqlite@3.44.2-r0
3.44.2-r2
ghcr.io/onedr0p/sonarr:4.0.2.118327ffdcc8a937
sqlite@3.44.2-r0
3.44.2-r2

Open the chart page →

14,231
thehivestrangebee-helmOfficialVerified publisher1.0.61 of 7See more

thehive strangebee-helm 1.0.6

1 of the 7 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

16,161
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

14,266
baserowbaserow-chartVerified publisher1.0.561 of 6See more

baserow baserow-chart 1.0.56

1 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

17,346
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1

Open the chart page →

53,012
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

5,915
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
SQLitePCLRaw.lib.e_sqlite3@2.1.10
no fix listed

Open the chart page →

2,615
k8s-image-swapperestahnVerified publisher1.11.01 of 2See more

k8s-image-swapper estahn 1.11.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
sqlite@3.44.2-r0
3.44.2-r2

Open the chart page →

1,980
lndfold0.3.151 of 4See more

lnd fold 0.3.15

1 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.16.4-beta-c287129953689
sqlite@3.41.2-r2
3.41.2-r4

Open the chart page →

8,834
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
sqlite3@3.45.1-1ubuntu2.1
3.45.1-1ubuntu2.4

Open the chart page →

2,578
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

12,270
infrahubinfrahubVerified publisher4.33.21 of 5See more

infrahub infrahub 4.33.2

1 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

10,460
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
sqlite3@3.31.1-4ubuntu0.7
3.31.1-4ubuntu0.7+esm1

Open the chart page →

6,354
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10

Open the chart page →

4,662
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
sqlite@3.26.0-16.el8_6
0:3.26.0-20.el8_10

Open the chart page →

4,956
kubeflowkubeflow1.6.23 of 45See more

kubeflow kubeflow 1.6.2

3 of the 45 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
istio/proxyv2:1.14.1df69c1a7af7c
sqlite3@3.31.1-4ubuntu0.3
3.31.1-4ubuntu0.7+esm1
library/python:3.7eedf63967cdb
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

97,040
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1

Open the chart page →

10,569
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

5,833
musicocielmusicocielVerified publisher0.0.01 of 3See more

musicociel musicociel 0.0.0

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:23.0.34f72a5b0c076
sqlite@3.34.1-6.el9_1
0:3.34.1-8.el9_6

Open the chart page →

4,405
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5

Open the chart page →

8,767
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1

Open the chart page →

10,536
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
sqlite@3.7.17-8.el7_7.1
0:3.7.17-9.el7_9.1
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
sqlite@3.7.17-8.el7_7.1
0:3.7.17-9.el7_9.1

Open the chart page →

4,519
uffizzi-appuffizzi-app1.3.01 of 14See more

uffizzi-app uffizzi-app 1.3.0

1 of the 14 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

19,363
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

13,567
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

9,753
eshoponabpabp-charts1.0.01 of 15See more

eshoponabp abp-charts 1.0.0

1 of the 15 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
sqlite3@3.22.0-1ubuntu0.7
3.22.0-1ubuntu0.7+esm2

Open the chart page →

19,805
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5

Open the chart page →

8,251
auto-deploy-appav1o-chartsVerified publisher0.15.41 of 1See more

auto-deploy-app av1o-charts 0.15.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

11,012
openshift-consoleav1o-chartsVerified publisher0.3.61 of 1See more

openshift-console av1o-charts 0.3.6

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
sqlite@3.26.0-6.el8
0:3.26.0-20.el8_10

Open the chart page →

9,052
cga-proxybarracuda-cga-helm-charts0.2.121 of 2See more

cga-proxy barracuda-cga-helm-charts 0.2.12

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
fydeinc/envoyproxy:1.13.8.29fadb0a491db
sqlite@3.41.2-r2
3.41.2-r4

Open the chart page →

1,051
backup-zenbzen0.1.41 of 1See more

backup-zen bzen 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
rezachalak/bzen-mongo:1.0.034f694325191
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1

Open the chart page →

8,007

Container images carrying it

1,286 by charts deploying them

A fixed version is listed for 7 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
yandex/clickhouse-server:19.17ab1738a64b70
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
1
yandex/clickhouse-server:19.14ccf9c2b5e3f2
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2
1
yandex/clickhouse-server:19.16d210dc69321e
sqlite3@3.22.0-1ubuntu0.3
3.22.0-1ubuntu0.7+esm2
1
ybucci/traefik-external-dns-operator:1.0.0f1fcc7c8d9fd
sqlite@3.48.0-r0
3.48.0-r3
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
sqlite3@3.45.1-1ubuntu2
3.45.1-1ubuntu2.4
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5
1
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
sqlite@3.7.17-8.el7_7.1
0:3.7.17-9.el7_9.1
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
sqlite3@3.22.0-1ubuntu0.2
3.22.0-1ubuntu0.7+esm2
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
sqlite3@3.11.0-1ubuntu1
3.11.0-1ubuntu1.5+esm3
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
sqlite3@3.11.0-1ubuntu1.1
3.11.0-1ubuntu1.5+esm3
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
sqlite3@3.11.0-1ubuntu1.1
3.11.0-1ubuntu1.5+esm3
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
gcr.io/kubecost1/kubecost-modeling:v0.1.24a2259b098b13
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
sqlite@3.41.2-r2
3.41.2-r4
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
SQLitePCLRaw.lib.e_sqlite3@2.1.0
sqlite3@3.37.2-2ubuntu0.1
no fix listed
3.37.2-2ubuntu0.5
1
ghcr.io/b-it-projects-gmbh/nvme_exporter:lateste70307b193c6
sqlite@3.49.2-r0
3.49.2-r1
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
sqlite@3.47.1-r0
3.48.0-r3
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/cosmicrocks/knots:29.2.knots20251010d7db5cd4079b
sqlite@3.45.3-r2
3.45.3-r3
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
sqlite@3.26.0-15.el8
0:3.26.0-20.el8_10
1
ghcr.io/ctron/kubectl:1.25e37d61b5277c
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
nodejs@1:14.16.0-2.module+el8.3.0+10180+b92e1eb6
nodejs-packaging@23-3.module+el8.3.0+6519+9f98ed83
sqlite@3.26.0-13.el8
1:22.16.0-2.module+el8.10.0+23338+c5a38893
0:2021.06-4.module+el8.10.0+23140+4056b950
0:3.26.0-20.el8_10
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
nodejs@1:14.16.0-2.module+el8.3.0+10180+b92e1eb6
nodejs-packaging@23-3.module+el8.3.0+6519+9f98ed83
sqlite@3.26.0-13.el8
1:22.16.0-2.module+el8.10.0+23338+c5a38893
0:2021.06-4.module+el8.10.0+23140+4056b950
0:3.26.0-20.el8_10
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
nodejs@1:14.16.0-2.module+el8.3.0+10180+b92e1eb6
nodejs-packaging@23-3.module+el8.3.0+6519+9f98ed83
sqlite@3.26.0-13.el8
1:22.16.0-2.module+el8.10.0+23338+c5a38893
0:2021.06-4.module+el8.10.0+23140+4056b950
0:3.26.0-20.el8_10
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
nodejs@1:14.16.0-2.module+el8.3.0+10180+b92e1eb6
nodejs-packaging@23-3.module+el8.3.0+6519+9f98ed83
sqlite@3.26.0-13.el8
1:22.16.0-2.module+el8.10.0+23338+c5a38893
0:2021.06-4.module+el8.10.0+23140+4056b950
0:3.26.0-20.el8_10
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
nodejs@1:14.16.0-2.module+el8.3.0+10180+b92e1eb6
nodejs-packaging@23-3.module+el8.3.0+6519+9f98ed83
sqlite@3.26.0-13.el8
1:22.16.0-2.module+el8.10.0+23338+c5a38893
0:2021.06-4.module+el8.10.0+23140+4056b950
0:3.26.0-20.el8_10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.