StackRadar

CVE-2025-6965

Critical

Advisory

Published 15 Jul 2025In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.725
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,281
of 17,787 indexed, latest versions
Container images
1,286
deployed by those charts
Fix available
7 of 8
affected packages

SQLitePCLRaw.lib.e_sqlite3 has a vulnerable dependency on SQLite

Carried by container images the latest versions of 1,281 of 17,787 indexed charts deploy, on 1,286 images.

Affected packageAffected versionsFixed inImages
SQLitePCLRaw.lib.e_sqlite3nuget2.0.4, 2.0.6, 2.1.0, 2.1.6+1 moreno fix listed16
sqlite3deb3.8.2-1ubuntu2, 3.8.2-1ubuntu2.1, 3.8.2-1ubuntu2.2, 3.11.0-1ubuntu1+27 more3.8.2-1ubuntu2.2+esm5, 3.11.0-1ubuntu1.5+esm3, 3.22.0-1ubuntu0.7+esm2, 3.31.1-4ubuntu0.7+esm1+3 more798
sqliterpm3.7.17-8.el7, 3.7.17-8.el7_7.1, 3.26.0-3.el8, 3.26.0-4.el8_1+13 more0:3.7.17-9.el7_9.1, 0:3.26.0-20.el8_10, 0:3.34.1-8.el9_6, 0:3.34.1-9.el9_7294
sqliteapk3.41.2-r2, 3.41.2-r3, 3.44.2-r0, 3.44.2-r1+7 more3.41.2-r4, 3.44.2-r2, 3.45.3-r3, 3.48.0-r3+1 more176
nodejsrpm1:12.18.2-1.module+el8.2.0+7233+61d664c1, 1:14.16.0-2.module+el8.3.0+10180+b92e1eb6, 1:14.17.3-2.module+el8.4.0+11738+3bd42762, 1:18.18.2-1.module+el8.8.0+20407+c11d40bd+5 more1:22.16.0-2.module+el8.10.0+23338+c5a38893, 1:22.16.0-2.module+el9.6.0+23339+d3c8acfa, 1:22.16.0-2.module+el9.6.0+32322+a8b1fd0114
nodejs-packagingrpm23-3.module+el8.3.0+6519+9f98ed830:2021.06-4.module+el8.10.0+23140+4056b9506
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a45, 2.0.3-1.module+el8.3.0+6519+9f98ed83, 3.0.1-1.module+el8.8.0+19757+8ca87034, 3.0.1-1.module+el9.6.0+23146+be9976bd0:3.0.1-1.module+el8.10.0+23140+4056b950, 0:3.0.1-1.module+el9.6.0+23339+d3c8acfa4
sqlite3rpm3.28.0-lp151.2.3.13.50.3-1.12
OSV records
GHSA-2m69-gcr7-jv3qALPINE-CVE-2025-6965DEBIAN-CVE-2025-6965RHSA-2025:11802RHSA-2025:11803RHSA-2025:11992RHSA-2025:12010RHSA-2025:12349RHSA-2025:20936RLSA-2025:11802RLSA-2025:11992RLSA-2025:12010RLSA-2025:20936UBUNTU-CVE-2025-6965openSUSE-SU-2025:15368-1
Also known as
BIT-sqlite-2025-6965, RHSA-2025:12036, RHSA-2025:12521, RHSA-2025:12749, RHSA-2025:12901, RHSA-2025:12904, RHSA-2025:12905, USN-7676-1, USN-7679-1

Charts affected

1,281 by stars
ChartLatestAffected imagesRadar Score
giteagiteaOfficialVerified publisher12.7.01 of 4See more

gitea gitea 12.7.0

1 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

8,842
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5

Open the chart page →

6,597
airflowairflow-helmVerified publisher8.9.02 of 4See more

airflow airflow-helm 8.9.0

2 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
sqlite3@3.40.1-2
3.40.1-2+deb12u2
ghcr.io/airflow-helm/pgbouncer:1.22.1-patch.0c181abe1093d
sqlite@3.44.2-r0
3.44.2-r2

Open the chart page →

11,372
keycloakcodecentricVerified publisher18.10.01 of 3See more

keycloak codecentric 18.10.0

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
sqlite@3.26.0-15.el8
0:3.26.0-20.el8_10

Open the chart page →

7,713
openebsopenebsOfficialVerified publisher4.6.11 of 35See more

openebs openebs 4.6.1

1 of the 35 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
sqlite@3.48.0-r0
3.48.0-r3

Open the chart page →

24,009
graylogkong-zVerified publisher3.0.321 of 5See more

graylog kong-z 3.0.32

1 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

2,736
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
sqlite3@3.22.0-1ubuntu0.7
3.22.0-1ubuntu0.7+esm2

Open the chart page →

5,557
openldap-stack-hahelm-openldapVerified publisher4.3.31 of 5See more

openldap-stack-ha helm-openldap 4.3.3

1 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

5,948
influxdb2influxdata2.1.21 of 1See more

influxdb2 influxdata 2.1.2

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/influxdb:2.7.4-alpinea10d46445d68
sqlite@3.41.2-r2
3.41.2-r4

Open the chart page →

2,102
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5

Open the chart page →

9,194
milvusmilvus4.0.313 of 5See more

milvus milvus 4.0.31

3 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
milvusdb/milvus:v2.2.13a3a55e1c1497
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
minio/minio:RELEASE.2023-03-20T20-16-18Z6d770d7f255c
sqlite@3.26.0-17.el8_7
0:3.26.0-20.el8_10

Open the chart page →

32,353
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

10,648
weblateweblateOfficialVerified publisher0.5.361 of 3See more

weblate weblate 0.5.36

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

6,761
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

2,660
community-operatormongodb-helm-charts0.13.01 of 1See more

community-operator mongodb-helm-charts 0.13.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

1,126
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

4,808
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

19,497
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
sqlite3@3.45.1-1ubuntu2.3
3.45.1-1ubuntu2.4

Open the chart page →

3,645
eclipse-cheeclipse-cheVerified publisher7.122.01 of 1See more

eclipse-che eclipse-che 7.122.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10

Open the chart page →

924
istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
sqlite3@3.11.0-1ubuntu1.1
3.11.0-1ubuntu1.5+esm3
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
sqlite3@3.11.0-1ubuntu1.1
3.11.0-1ubuntu1.5+esm3

Open the chart page →

23,992
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.01 of 5See more

openproject openproject-helm-charts 13.11.0

1 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
openproject/hocuspocus:release-338001b288dc1359dfb5
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

19,998
zabbixcetic3.1.32 of 5See more

zabbix cetic 3.1.3

2 of the 5 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5

Open the chart page →

33,907
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

3,700
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

6,550
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

6,012
pypiservercommunity-chartsVerified publisher0.1.91 of 1See more

pypiserver community-charts 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
pypiserver/pypiserver:v2.4.1e935e19433ef
sqlite@3.45.3-r2
3.45.3-r3

Open the chart page →

583
daskdask2024.1.11 of 2See more

dask dask 2024.1.1

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1

Open the chart page →

12,830
litellm-helmlitellm1.101.01 of 2See more

litellm-helm litellm 1.101.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

4,574
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.7+esm2

Open the chart page →

15,607
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
SQLitePCLRaw.lib.e_sqlite3@2.0.4
sqlite3@3.31.1-4ubuntu0.3
no fix listed
3.31.1-4ubuntu0.7+esm1

Open the chart page →

7,917
homeassistantvolker-raschekVerified publisher0.2.31 of 1See more

homeassistant volker-raschek 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2023.12.48d000332b09b
sqlite@3.41.2-r2
3.41.2-r4

Open the chart page →

6,040
scribebackube-helm-chartsVerified publisher0.2.01 of 2See more

scribe backube-helm-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/backube/scribe:0.2.0cdefc81c6b2e
sqlite@3.26.0-13.el8
0:3.26.0-20.el8_10

Open the chart page →

6,853
glasskube-operatorglasskubeOfficialVerified publisher0.12.22 of 3See more

glasskube-operator glasskube 0.12.2

2 of the 3 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

11,971
plane-cemakeplaneOfficialVerified publisher1.8.11 of 11See more

plane-ce makeplane 1.8.1

1 of the 11 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/rabbitmq:3.13.6-management-alpine611107e29cce
sqlite@3.45.3-r1
3.45.3-r3

Open the chart page →

4,854
milvusmilvus-helm5.0.281 of 4See more

milvus milvus-helm 5.0.28

1 of the 4 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5

Open the chart page →

10,764
prefect-serverprefectVerified publisher2026.9.141419101 of 2See more

prefect-server prefect 2026.9.14141910

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2

Open the chart page →

5,448
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
sqlite@3.34.1-8.el9_6
0:3.34.1-9.el9_7

Open the chart page →

6,385
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
sqlite3@3.31.1-4ubuntu0.4
3.31.1-4ubuntu0.7+esm1

Open the chart page →

18,570
apicurio-registryapicurio-registry-helmVerified publisher3.8.01 of 2See more

apicurio-registry apicurio-registry-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10

Open the chart page →

6,675
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2api:3.86f56d239d280
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2auth:3.833ecfda16608
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2notifier:3.8f190a6212195
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2rulesengine:3.8259503496ff9
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2scheduler:3.8b1de2055c362
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2sensorcontainer:3.8b1a338f64773
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2stream:3.81c8904a3bf67
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2timersengine:3.81bf35bfaf00c
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2web:3.809989a26c8b7
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1
stackstorm/st2workflowengine:3.819fdfffdbba8
sqlite3@3.31.1-4ubuntu0.5
3.31.1-4ubuntu0.7+esm1

Open the chart page →

96,984
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
supabase/storage-api:v1.12.0f983fb50bd95
sqlite@3.45.3-r1
3.45.3-r3
supabase/studio:20241021-9f9b08326d8070c55e9
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

23,263
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

8,530
purelbpurelb0.0.0-106-ipv6-lbip-052cedab1 of 2See more

purelb purelb 0.0.0-106-ipv6-lbip-052cedab

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
sqlite@3.26.0-15.el8
0:3.26.0-20.el8_10

Open the chart page →

4,412
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1

Open the chart page →

11,453
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
SQLitePCLRaw.lib.e_sqlite3@2.1.0
sqlite3@3.37.2-2ubuntu0.1
no fix listed
3.37.2-2ubuntu0.5

Open the chart page →

4,281
devtron-operatordevtron0.23.32 of 11See more

devtron-operator devtron 0.23.3

2 of the 11 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
sqlite3@3.40.1-2
3.40.1-2+deb12u2
quay.io/devtron/postgres:14.91b594392f7cb
sqlite3@3.40.1-2
3.40.1-2+deb12u2

Open the chart page →

31,447
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
sqlite3@3.45.1-1ubuntu2.3
3.45.1-1ubuntu2.4

Open the chart page →

3,645
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
sqlite3@3.45.1-1ubuntu2.1
3.45.1-1ubuntu2.4

Open the chart page →

5,396
ilumilumOfficialVerified publisher6.7.32 of 19See more

ilum ilum 6.7.3

2 of the 19 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
gitea/gitea:1.22.376f516a1a8c2
sqlite@3.45.3-r1
3.45.3-r3

Open the chart page →

23,289
syftopenmined0.9.52 of 6See more

syft openmined 0.9.5

2 of the 6 container images this version deploys carry CVE-2025-6965.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
sqlite3@3.40.1-2
3.40.1-2+deb12u2
openmined/syft-seaweedfs:0.9.53a4144c0bb82
sqlite@3.44.2-r0
3.44.2-r2

Open the chart page →

17,306

Container images carrying it

1,286 by charts deploying them

A fixed version is listed for 7 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
sqlite3@3.31.1-4ubuntu0.6
3.31.1-4ubuntu0.7+esm1
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
sqlite@3.44.2-r0
3.44.2-r2
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
sqlite3@3.37.2-2ubuntu0.3
3.37.2-2ubuntu0.5
1
ghcr.io/wasi-master/13ft:0.3.4563ce7794a71
sqlite@3.44.2-r0
3.44.2-r2
1
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
sqlite3@3.22.0-1ubuntu0.5
3.22.0-1ubuntu0.7+esm2
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/wyrihaximusnet/redirect:randombf5983d754d7
sqlite@3.45.3-r1
3.45.3-r3
1
ghcr.io/zazukoians/qlever-ui:v0.10.034c7b540a095
sqlite@3.45.3-r1
3.45.3-r3
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
sqlite3@3.22.0-1ubuntu0.7
3.22.0-1ubuntu0.7+esm2
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
sqlite3@3.22.0-1ubuntu0.7
3.22.0-1ubuntu0.7+esm2
1
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
sqlite@3.34.1-8.el9_6
0:3.34.1-9.el9_7
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
sqlite3@3.22.0-1ubuntu0.5
3.22.0-1ubuntu0.7+esm2
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.7+esm1
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
sqlite3@3.40.1-2
3.40.1-2+deb12u2
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f127
sqlite@3.34.1-7.el9_3
1:22.16.0-2.module+el9.6.0+23339+d3c8acfa
0:3.34.1-8.el9_6
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
sqlite3@3.37.2-2
3.37.2-2ubuntu0.5
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
sqlite3@3.45.1-1ubuntu2.1
3.45.1-1ubuntu2.4
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
sqlite3@3.37.2-2ubuntu0.1
3.37.2-2ubuntu0.5
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
sqlite@3.26.0-13.el8
0:3.26.0-20.el8_10
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
sqlite@3.26.0-18.el8_8
0:3.26.0-20.el8_10
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
sqlite3@3.40.1-2+deb12u1
3.40.1-2+deb12u2
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
nodejs@1:14.16.0-2.module+el8.3.0+10180+b92e1eb6
nodejs-packaging@23-3.module+el8.3.0+6519+9f98ed83
sqlite@3.26.0-13.el8
1:22.16.0-2.module+el8.10.0+23338+c5a38893
0:2021.06-4.module+el8.10.0+23140+4056b950
0:3.26.0-20.el8_10
1
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
sqlite@3.26.0-19.el8_9
0:3.26.0-20.el8_10
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
sqlite@3.26.0-13.el8
0:3.26.0-20.el8_10
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
sqlite@3.34.1-7.el9_3
0:3.34.1-8.el9_6
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
sqlite3@3.22.0-1ubuntu0.6
3.22.0-1ubuntu0.7+esm2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.