StackRadar

CVE-2025-69720

Critical

Advisory

Published 19 Mar 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,258
of 17,803 indexed, latest versions
Container images
2,217
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: ncurses security update

Carried by container images the latest versions of 2,258 of 17,803 indexed charts deploy, on 2,217 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+11 more5.9+20140118-1ubuntu1+esm6, 6.0+20160213-1ubuntu1+esm6, 6.1-1ubuntu1.18.04.1+esm3, 6.2-0ubuntu2.1+esm1+4 more2,205
ncursesrpm6.1-150000.5.30.1, 6.4-2.azl3, 6.4-14.20240127.el10, 6.5.20250531-160000.2.20:6.4-15.20240127.el10_1, 6.1-150000.5.33.1, 6.4-3, 6.5.20250531-160000.3.112
OSV records
UBUNTU-CVE-2025-69720DEBIAN-CVE-2025-69720RHSA-2026:5913AZL-80469ECHO-01c4-4a1e-f949SUSE-SU-2026:1510-1SUSE-SU-2026:22294-1
Also known as
USN-8503-1

Charts affected

2,258 by stars
ChartLatestAffected imagesRadar Score
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.1

Open the chart page →

2,152
nginx-chartxxoznge-nginx0.1.01 of 1See more

nginx-chart xxoznge-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
ncurses@6.5+20250216-2
no fix listed

Open the chart page →

1,861
helm-demoyahoon-helm-demoVerified publisher1.0.01 of 1See more

helm-demo yahoon-helm-demo 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
ncurses@6.5+20250216-2
no fix listed

Open the chart page →

1,311
my-nginx-appyasser-nginx-app0.1.01 of 1See more

my-nginx-app yasser-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
ncurses@6.5+20250216-2
no fix listed

Open the chart page →

1,861
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
ncurses@6.4-4
no fix listed

Open the chart page →

2,692
changedetection-iozekker6Verified publisher1.101.01See more

changedetection-io zekker6 1.101.0

1 container image this version deploys carries CVE-2025-69720.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
ncurses@6.4-4
no fix listed

Open the chart page →

NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
ncurses@6.5+20250216-2
no fix listed

Open the chart page →

1,861
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-69720.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1+esm3
yandex/clickhouse-server:21.3.204eccfffb01d7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm1

Open the chart page →

9,272

Container images carrying it

2,217 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/camptocamp/pgbouncer:latest19dc5663cac4
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
ncurses@6.4-4
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
ncurses@6.3-2ubuntu0.1
6.3-2ubuntu0.2
1
ghcr.io/caninehq/canine:latesta058034ca006
ncurses@6.4-4
no fix listed
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
ncurses@6.4-4
no fix listed
1
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
ncurses@6.4-4
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
ncurses@6.4-4
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
ncurses@6.4-4
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
ncurses@6.4-4
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
ncurses@6.4-4
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
ncurses@6.4-4
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
ncurses@6.4-4
no fix listed
1
ghcr.io/chroma-core/chroma:1.5.3cfd193653bd6
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
ncurses@6.4-4
no fix listed
1
ghcr.io/cjmalloy/jasper-ui:v1.3.623246dc2160efe
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/cobbler/cobbler-tftp:v0.1.0a7fef3ca80baa4
ncurses@6.5.20250531-160000.2.2
6.5.20250531-160000.3.1
1
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
ncurses@6.4-4
no fix listed
1
ghcr.io/containeroo/filesystem-exporter:v1.5.2a66121e16d4e
ncurses@6.4-4
no fix listed
1
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.1
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
ncurses@6.4-4
no fix listed
1
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
ncurses@6.4-4
no fix listed
1
ghcr.io/dakera-ai/dakera:0.11.101af610992a416
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/dakera-ai/dakera-mcp:0.10.11a3d48418b14a
ncurses@6.4-4
no fix listed
1
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.1
1
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/danielgines/brightdata-exporter:0.2.176920d17cf6ff
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/dask/dask:2024.1.0080150de7d86
ncurses@6.2-0ubuntu2.1
6.2-0ubuntu2.1+esm1
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
ncurses@6.3-2ubuntu0.1
6.3-2ubuntu0.2
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm1
1
ghcr.io/defguard/defguard:2.1.0df2e31d3b4f5
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/defguard/defguard-proxy:2.1.08765a28e383e
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/defguard/gateway:2.1.0738b2b6f413b
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
ncurses@6.4-4
no fix listed
1
ghcr.io/deven96/ahnlich-db:latest45d8b5aab491
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
ncurses@6.4-4
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
ncurses@6.4-4
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
ncurses@6.4-4
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.5f69554198005
ncurses@6.4-4
no fix listed
1
ghcr.io/ding113/claude-code-hub:latest87f9e8a92bd7
ncurses@6.5+20250216-2
no fix listed
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.1
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.