StackRadar

CVE-2025-71319

High

Advisory

Published 2 Apr 2025In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
52nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4
of 17,781 indexed, latest versions
Container images
4
deployed by those charts
Fix available
1 of 1
affected package

image-size Denial of Service via Infinite Loop during Image Processing

Carried by container images the latest versions of 4 of 17,781 indexed charts deploy, on 4 images.

Affected packageAffected versionsFixed inImages
image-sizenpm1.1.1, 1.2.0, 2.0.11.2.1, 2.0.24
OSV records
GHSA-m5qc-5hw7-8vg7

Charts affected

4 by stars
ChartLatestAffected imagesRadar Score
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2025-71319.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
image-size@1.1.1
1.2.1

Open the chart page →

13,738
jellyseerrrtomik-helm-chartsVerified publisher0.0.11 of 1See more

jellyseerr rtomik-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-71319.

Container imageDigestPackageFixed in
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
image-size@1.2.0
1.2.1

Open the chart page →

2,823
desishowbiz-frontenddesishowbiz1.0.01 of 1See more

desishowbiz-frontend desishowbiz 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-71319.

Container imageDigestPackageFixed in
rahulbhiwagade122/desishowbiz:latest08490b70998c
image-size@2.0.1
2.0.2

Open the chart page →

2,529
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-71319.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
image-size@1.1.1
1.2.1

Open the chart page →

9,019

Container images carrying it

4 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/ghost:5.79.083f7bf209844
image-size@1.1.1
1.2.1
1
moreillon/food-manager:lateste8fd856e593d
image-size@1.1.1
1.2.1
1
rahulbhiwagade122/desishowbiz:latest08490b70998c
image-size@2.0.1
2.0.2
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
image-size@1.2.0
1.2.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.