StackRadar

CVE-2025-7345

High

Advisory

Published 8 Jul 2025In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.012
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
207
of 17,781 indexed, latest versions
Container images
221
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: gdk-pixbuf2 security update

Carried by container images the latest versions of 207 of 17,781 indexed charts deploy, on 221 images.

Affected packageAffected versionsFixed inImages
gdk-pixbufdeb2.32.2-1ubuntu1.4, 2.32.2-1ubuntu1.5, 2.32.2-1ubuntu1.6, 2.36.11-2+15 more2.32.2-1ubuntu1.6+esm2, 2.36.11-2ubuntu0.1~esm2, 2.40.0+dfsg-3ubuntu0.5+esm1, 2.42.2+dfsg-1+deb11u4+3 more206
gdk-pixbuf2rpm2.36.12-3.el7, 2.36.12-5.el8, 2.36.12-6.el8_10, 2.42.6-4.el9_40:2.36.12-4.el7_9, 0:2.36.12-7.el8_10, 0:2.42.6-6.el9_615
OSV records
DEBIAN-CVE-2025-7345RHSA-2025:12841RHSA-2025:13315RHSA-2025:14683UBUNTU-CVE-2025-7345DLA-4344-1
Also known as
RHSA-2025:14574, RHSA-2025:14585, RHSA-2025:14618, RHSA-2025:14647, USN-7662-1

Charts affected

207 by stars
ChartLatestAffected imagesRadar Score
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3

Open the chart page →

14,358
maybe-financevicsuferVerified publisher0.2.71 of 3See more

maybe-finance vicsufer 0.2.7

1 of the 3 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3

Open the chart page →

10,795
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4

Open the chart page →

3,392
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4

Open the chart page →

2,132
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
gdk-pixbuf@2.42.8+dfsg-1ubuntu0.3
2.42.8+dfsg-1ubuntu0.4

Open the chart page →

14,100
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4

Open the chart page →

1,838

Container images carrying it

221 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
openkm/openkm-ce:6.3.113bc465a7461b
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.3
2.40.0+dfsg-3ubuntu0.5+esm1
1
openproject/hocuspocus:release-338001b288dc1359dfb5
gdk-pixbuf@2.42.10+dfsg-1+deb12u2
2.42.10+dfsg-1+deb12u3
1
owanio1992/devpi:6.16.04ade8e1e4d7e
gdk-pixbuf@2.42.2+dfsg-1+deb11u2
2.42.2+dfsg-1+deb11u4
1
owncloud/server:10.15.051d9b74fc2a8
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.5
2.40.0+dfsg-3ubuntu0.5+esm1
1
penpotapp/backend:2.2.147853d9bb9dd
gdk-pixbuf@2.42.8+dfsg-1ubuntu0.3
2.42.8+dfsg-1ubuntu0.4
1
penpotapp/exporter:2.2.15c835ffd87ab
gdk-pixbuf@2.42.8+dfsg-1ubuntu0.3
2.42.8+dfsg-1ubuntu0.4
1
phntom/email-manager:0.1.22d8e2a9f2f085
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
phntom/external-dns-host-network:0.0.123adadbac8443
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
photoprism/photoprism:220629-jammy2954334adbda
gdk-pixbuf@2.42.8+dfsg-1
2.42.8+dfsg-1ubuntu0.4
1
photoprism/photoprism:240711-cefc6fd632ca74
gdk-pixbuf@2.42.10+dfsg-3ubuntu3.1
2.42.10+dfsg-3ubuntu3.2
1
project2team4/react:latest3ff031a08887
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.2
2.40.0+dfsg-3ubuntu0.5+esm1
1
robmarkcole/deepstack-ui:latest410275726459
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4
1
robotshop/rs-payment:latest774b52c6180d
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
gdk-pixbuf@2.42.8+dfsg-1ubuntu0.3
2.42.8+dfsg-1ubuntu0.4
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
scrapinghub/splash:3.4.1a5f89bc84606
gdk-pixbuf@2.36.11-2
2.36.11-2ubuntu0.1~esm2
1
sismics/docs:v1.10f4b0ef019cf1
gdk-pixbuf@2.36.11-2
2.36.11-2ubuntu0.1~esm2
1
sissbruecker/linkding:1.41.0-plusa222fb777e1f
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.4
2.40.0+dfsg-3ubuntu0.5+esm1
1
socialmediamacroscope/classification_predict:0.1.24fb86885d64d
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/classification_split:0.1.24bfda60829fe
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/classification_train:0.1.207477060bba8
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/clowder_create_collection:0.1.0c969f7677983
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/clowder_create_dataset:0.1.09b4211832429
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/clowder_create_space:0.1.0999f2ff2c128
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/clowder_list:0.1.051cb17626519
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/clowder_upload_file:0.1.274e35f64db68
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
socialmediamacroscope/screen_name_prompt:0.1.2724f3f5702e0
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.2
2.40.0+dfsg-3ubuntu0.5+esm1
1
speckle/speckle-preview-service:2.26.3092384dba45d
gdk-pixbuf@2.42.10+dfsg-1+deb12u2
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
gdk-pixbuf@2.42.10+dfsg-1+deb12u2
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
stashapp/stash:latest24dbd7607174
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.2
2.40.0+dfsg-3ubuntu0.5+esm1
1
stashapp/stash-box:latesta534c8afdf39
gdk-pixbuf@2.42.10+dfsg-3ubuntu3.1
2.42.10+dfsg-3ubuntu3.2
1
stratospire/activityrelay:0.2.3a4c34cb01117
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
substratusai/verba:v0.4.0-baseURL261695be635eb
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
sysnet4admin/colosseum-cms:loge74b43c7f492
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
teknas09/bird-pod:latest12a1fa85c4aa
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
gdk-pixbuf@2.32.2-1ubuntu1.4
2.32.2-1ubuntu1.6+esm2
1
th0th/node-red:4.0.3-debiand06fa39f7406
gdk-pixbuf@2.42.2+dfsg-1+deb11u2
2.42.2+dfsg-1+deb11u4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.