StackRadar

CVE-2025-7345

High

Advisory

Published 8 Jul 2025In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.012
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
207
of 17,781 indexed, latest versions
Container images
221
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: gdk-pixbuf2 security update

Carried by container images the latest versions of 207 of 17,781 indexed charts deploy, on 221 images.

Affected packageAffected versionsFixed inImages
gdk-pixbufdeb2.32.2-1ubuntu1.4, 2.32.2-1ubuntu1.5, 2.32.2-1ubuntu1.6, 2.36.11-2+15 more2.32.2-1ubuntu1.6+esm2, 2.36.11-2ubuntu0.1~esm2, 2.40.0+dfsg-3ubuntu0.5+esm1, 2.42.2+dfsg-1+deb11u4+3 more206
gdk-pixbuf2rpm2.36.12-3.el7, 2.36.12-5.el8, 2.36.12-6.el8_10, 2.42.6-4.el9_40:2.36.12-4.el7_9, 0:2.36.12-7.el8_10, 0:2.42.6-6.el9_615
OSV records
DEBIAN-CVE-2025-7345RHSA-2025:12841RHSA-2025:13315RHSA-2025:14683UBUNTU-CVE-2025-7345DLA-4344-1
Also known as
RHSA-2025:14574, RHSA-2025:14585, RHSA-2025:14618, RHSA-2025:14647, USN-7662-1

Charts affected

207 by stars
ChartLatestAffected imagesRadar Score
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3

Open the chart page →

14,358
maybe-financevicsuferVerified publisher0.2.71 of 3See more

maybe-finance vicsufer 0.2.7

1 of the 3 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3

Open the chart page →

10,795
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4

Open the chart page →

3,392
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4

Open the chart page →

2,132
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
gdk-pixbuf@2.42.8+dfsg-1ubuntu0.3
2.42.8+dfsg-1ubuntu0.4

Open the chart page →

14,100
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2025-7345.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4

Open the chart page →

1,838

Container images carrying it

221 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
ghcr.io/rodg/nodecg-base:latest31be4bf87070
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.4
2.40.0+dfsg-3ubuntu0.5+esm1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
gdk-pixbuf@2.40.0+dfsg-3ubuntu0.4
2.40.0+dfsg-3ubuntu0.5+esm1
1
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
gdk-pixbuf@2.42.2+dfsg-1+deb11u1
2.42.2+dfsg-1+deb11u4
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
gdk-pixbuf@2.42.2+dfsg-1
2.42.2+dfsg-1+deb11u4
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
gdk-pixbuf@2.42.10+dfsg-1+deb12u1
2.42.10+dfsg-1+deb12u3
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
gdk-pixbuf2@2.36.12-5.el8
0:2.36.12-7.el8_10
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
gdk-pixbuf@2.32.2-1ubuntu1.6
2.32.2-1ubuntu1.6+esm2
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
gdk-pixbuf2@2.36.12-5.el8
0:2.36.12-7.el8_10
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
gdk-pixbuf@2.42.10+dfsg-1+b1
2.42.10+dfsg-1+deb12u3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.