StackRadar

CVE-2025-70873

High

Advisory

Published 12 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.003
23rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,133
of 17,790 indexed, latest versions
Container images
923
deployed by those charts
Fix available
2 of 2
affected packages

lemon-3.51.3-1.1 on GA media

Carried by container images the latest versions of 1,133 of 17,790 indexed charts deploy, on 923 images.

Affected packageAffected versionsFixed inImages
sqlite3deb3.40.1-2, 3.40.1-2+deb12u1, 3.40.1-2+deb12u2, 3.46.1-7+4 more3.46.1-7+e2921
sqlite3rpm3.28.0-lp151.2.3.13.51.3-1.12
OSV records
DEBIAN-CVE-2025-70873ECHO-186e-750f-440bopenSUSE-SU-2026:10406-1

Charts affected

1,133 by stars
ChartLatestAffected imagesRadar Score
nginx-apppnnl-miscscripts0.1.21 of 1See more

nginx-app pnnl-miscscripts 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,849
pixiecore-simpleconfigpnnl-miscscripts0.1.51 of 1See more

pixiecore-simpleconfig pnnl-miscscripts 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,849
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
sqlite3@3.40.1-2
no fix listed

Open the chart page →

13,002
libretimepodzone-chartsVerified publisher0.4.13 of 9See more

libretime podzone-charts 0.4.1

3 of the 9 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
no fix listed
library/postgres:16.24aea012537ed
sqlite3@3.40.1-2
no fix listed
ghcr.io/libretime/icecast:latest3c98b92e9535
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

11,213
agentpolyaxon2.16.43 of 4See more

agent polyaxon 2.16.4

3 of the 4 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
sqlite3@3.46.1-7+deb13u1
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
sqlite3@3.46.1-7+deb13u1
no fix listed
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

10,254
polyaxonpolyaxon2.16.44 of 5See more

polyaxon polyaxon 2.16.4

4 of the 5 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1102e2f47a405e
sqlite3@3.40.1-2
no fix listed
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
sqlite3@3.46.1-7+deb13u1
no fix listed
polyaxon/polyaxon-api:2.16.42b55c3265a90
sqlite3@3.46.1-7+deb13u1
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

13,995
postgrespostgresVerified publisher0.1.11 of 1See more

postgres postgres 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/postgres:13.12ced3ba927f4c
sqlite3@3.40.1-2
no fix listed

Open the chart page →

4,933
svc-postgrespostgres-fiap-lanches0.1.01 of 1See more

svc-postgres postgres-fiap-lanches 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,649
prefect-agentprefectVerified publisher2024.8.301638221 of 1See more

prefect-agent prefect 2024.8.30163822

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
sqlite3@3.40.1-2
no fix listed

Open the chart page →

5,513
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
sqlite3@3.40.1-2
no fix listed

Open the chart page →

8,241
wp-chartprojet-devops0.1.01 of 2See more

wp-chart projet-devops 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

5,270
prometheus-optimizerprometheus-optimizer0.2.221 of 1See more

prometheus-optimizer prometheus-optimizer 0.2.22

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
sqlite3@3.40.1-2
no fix listed

Open the chart page →

4,440
prompt-dbprompt-dbVerified publisher1.0.71 of 3See more

prompt-db prompt-db 1.0.7

1 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

3,355
web-chartpsb-ktcloudlab0.1.01 of 1See more

web-chart psb-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,849
web-chartpsg-ktcloudlab0.1.01 of 1See more

web-chart psg-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,849
nginx-chartpshs-nginx0.1.01 of 1See more

nginx-chart pshs-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,849
flaskDiaryptj-miniproject2.1.21 of 2See more

flaskDiary ptj-miniproject 2.1.2

1 of the 2 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
freedom98/flask:k3.0d7ce1533f297
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

3,088
apppvillaverdeVerified publisher0.2.61 of 1See more

app pvillaverde 0.2.6

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:1.31a53fc6c27208
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,752
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
sqlite3@3.40.1-2
no fix listed

Open the chart page →

14,628
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
sqlite3@3.40.1-2
no fix listed

Open the chart page →

12,639
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
sqlite3@3.40.1-2
no fix listed

Open the chart page →

12,639
qantas-apiqantas-helm0.1.01 of 3See more

qantas-api qantas-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,649
open-terminalqaoruVerified publisher0.2.41 of 1See more

open-terminal qaoru 0.2.4

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

2,055
cf-operatorquarks2.3.0+0.g27a91cdf2 of 2See more

cf-operator quarks 2.3.0+0.g27a91cdf

2 of the 2 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
sqlite3@3.28.0-lp151.2.3.1
3.51.3-1.1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
sqlite3@3.28.0-lp151.2.3.1
3.51.3-1.1

Open the chart page →

11,942
qubivaqubiva0.3.21 of 3See more

qubiva qubiva 0.3.2

1 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

4,302
cupsr2dlan-helm-chartsVerified publisher0.1.01 of 1See more

cups r2dlan-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
anujdatar/cups:25.07.01685df04a643b
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

7,713
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
sqlite3@3.40.1-2
no fix listed

Open the chart page →

21,291
rawfile-localpvrawfile0.15.21 of 6See more

rawfile-localpv rawfile 0.15.2

1 of the 6 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
openebs/rawfile-localpv:v0.15.2a39ef27ea28b
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

2,897
helm-redchefredchef0.1.01 of 3See more

helm-redchef redchef 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
sharanalwar/redchef-backend:latest8d3cab80df49
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

4,782
my-nginx-apprepo-for-helm-nginx-app0.1.01 of 1See more

my-nginx-app repo-for-helm-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

1,849
redminerestic-pvc-backupVerified publisher0.2.61 of 1See more

redmine restic-pvc-backup 0.2.6

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

4,273
searxngrestic-pvc-backupVerified publisher0.1.111 of 3See more

searxng restic-pvc-backup 0.1.11

1 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-trixie64e361b630ec
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

829
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
sqlite3@3.40.1-2
no fix listed

Open the chart page →

7,459
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

3,955
spoolmanretsamedocVerified publisher26.9.01 of 1See more

spoolman retsamedoc 26.9.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

1,797
revwallet-apirevwallet0.7.121 of 1See more

revwallet-api revwallet 0.7.12

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
arthurjguerra18/revwallet:v0.7.12f540af20b307
sqlite3@3.40.1-2
no fix listed

Open the chart page →

5,869
istio-helloworldrgnu1.0.12 of 2See more

istio-helloworld rgnu 1.0.1

2 of the 2 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
istio/examples-helloworld-v1:latest328b237e4fb1
sqlite3@3.40.1-2
no fix listed
istio/examples-helloworld-v2:latest0a7f02b2c7c9
sqlite3@3.40.1-2
no fix listed

Open the chart page →

9,452
kube-web-viewrlex0.5.01 of 1See more

kube-web-view rlex 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:23.8.0431f1bf013d0
sqlite3@3.40.1-2
no fix listed

Open the chart page →

4,925
kresusrm3lVerified publisher0.2.12 of 3See more

kresus rm3l 0.2.1

2 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r16687034f33da6
sqlite3@3.40.1-2+deb12u1
no fix listed
bnjbvr/kresus:0.22.137e216b182c8
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

15,681
web-checkrm3lVerified publisher0.1.01 of 1See more

web-check rm3l 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

9,327
matrix-stackrock8sVerified publisher0.8.11 of 7See more

matrix-stack rock8s 0.8.1

1 of the 7 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

9,299
reviewboardrock8sVerified publisher0.0.11 of 3See more

reviewboard rock8s 0.0.1

1 of the 3 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
no fix listed

Open the chart page →

6,159
rocketchat-voiprocketchat-server0.1.01 of 1See more

rocketchat-voip rocketchat-server 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
rocketchat/freeswitch:stablecfba5c20a5cc
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

5,763
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
sqlite3@3.40.1-2
no fix listed

Open the chart page →

9,685
devtron-enterpriseromholdings48.0.03 of 28See more

devtron-enterprise romholdings 48.0.0

3 of the 28 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
sqlite3@3.40.1-2
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
sqlite3@3.40.1-2+deb12u2
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
sqlite3@3.40.1-2
no fix listed

Open the chart page →

68,695
devtron-operatorromholdings0.23.32 of 11See more

devtron-operator romholdings 0.23.3

2 of the 11 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
sqlite3@3.40.1-2
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
sqlite3@3.40.1-2
no fix listed

Open the chart page →

33,180
migration-incluster-cdromholdings0.10.01 of 1See more

migration-incluster-cd romholdings 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

3,908
endeavorrotationalVerified publisher1.3.11 of 2See more

endeavor rotational 1.3.1

1 of the 2 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
rotationalio/quarterdeck:0.16.00e7ad3a031dc
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

2,240
imgtagrotationalVerified publisher0.2.01 of 1See more

imgtag rotational 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

3,329
quarterdeckrotationalVerified publisher0.16.01 of 1See more

quarterdeck rotational 0.16.0

1 of the 1 container images this version deploys carry CVE-2025-70873.

Container imageDigestPackageFixed in
rotationalio/quarterdeck:0.16.00e7ad3a031dc
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

1,161

Container images carrying it

923 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
sqlite3@3.40.1-2
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
sqlite3@3.40.1-2
no fix listed
1
quay.io/argoprojlabs/gitops-promoter:v0.38.19c8a510dc25e
sqlite3@3.46.1-7+deb13u1
no fix listed
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
sqlite3@3.40.1-2+deb12u1
no fix listed
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
sqlite3@3.46.1-7+deb13u1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
sqlite3@3.40.1-2+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
sqlite3@3.40.1-2+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
sqlite3@3.40.1-2+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
sqlite3@3.40.1-2+deb12u2
no fix listed
1
quay.io/maxiv/pieeat:0.9.3099715479210
sqlite3@3.46.1-7+deb13u1
no fix listed
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
sqlite3@3.46.1-7+deb13u1
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
sqlite3@3.46.1-7
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
sqlite3@3.40.1-2
no fix listed
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
sqlite3@3.46.1-7+deb13u1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
sqlite3@3.46.1-7+deb13u1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
sqlite3@3.46.1-7+deb13u1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
sqlite3@3.40.1-2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.