StackRadar

CVE-2025-7458

Critical

Advisory

Published 29 Jul 2025In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.002
15th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
463
of 17,781 indexed, latest versions
Container images
457
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 463 of 17,781 indexed charts deploy, on 457 images.

Affected packageAffected versionsFixed inImages
sqlite3deb3.40.1-2, 3.40.1-2+deb12u1, 3.40.1-2+deb12u2no fix listed457
OSV records
DEBIAN-CVE-2025-7458

Charts affected

463 by stars
ChartLatestAffected imagesRadar Score
kenerunxwaresVerified publisher2026.2.51 of 1See more

kener unxwares 2026.2.5

1 of the 1 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

5,228
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
sqlite3@3.40.1-2
no fix listed

Open the chart page →

14,358
telegram-rebotvcnngrVerified publisher1.0.02 of 3See more

telegram-rebot vcnngr 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
vcnngr/telegram-login:latest1a849a997b6d
sqlite3@3.40.1-2+deb12u1
no fix listed
vcnngr/telegram-rebot:latest30f1f05e57a6
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

5,026
maybe-financevicsuferVerified publisher0.2.71 of 3See more

maybe-finance vicsufer 0.2.7

1 of the 3 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

10,795
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
sqlite3@3.40.1-2
no fix listed

Open the chart page →

7,085
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
sqlite3@3.40.1-2
no fix listed

Open the chart page →

10,001
welcome-elos-webappwelcome-elos-webappVerified publisher2.0.01 of 1See more

welcome-elos-webapp welcome-elos-webapp 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
pococze/python-hello-elos:2.0.07a1aab425e51
sqlite3@3.40.1-2
no fix listed

Open the chart page →

2,678
giteawenerme12.7.01 of 4See more

gitea wenerme 12.7.0

1 of the 4 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

8,811
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

9,117
keycloakwiremindVerified publisher25.3.11 of 2See more

keycloak wiremind 25.3.1

1 of the 2 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

7,624
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
sqlite3@3.40.1-2
no fix listed

Open the chart page →

5,542
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

11,577
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2025-7458.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
sqlite3@3.40.1-2
no fix listed
hamzaarshad10/querypodpy:1.7154f38e8668e
sqlite3@3.40.1-2
no fix listed
murtazashah46/helmfile:latest4d11726cf803
sqlite3@3.40.1-2
no fix listed

Open the chart page →

13,677

Container images carrying it

457 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
sqlite3@3.40.1-2+deb12u1
no fix listed
11
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
sqlite3@3.40.1-2
no fix listed
6
quay.io/devtron/postgres:14.91b594392f7cb
sqlite3@3.40.1-2
no fix listed
6
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
sqlite3@3.40.1-2+deb12u1
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
sqlite3@3.40.1-2+deb12u2
no fix listed
5
library/postgres:122f2a8c2a7d10
sqlite3@3.40.1-2+deb12u1
no fix listed
5
bitnamilegacy/postgresql:16233f361c5819
sqlite3@3.40.1-2+deb12u1
no fix listed
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
sqlite3@3.40.1-2+deb12u1
no fix listed
4
opea/llm-tgi:1.00c25aab3f106
sqlite3@3.40.1-2
no fix listed
4
shashkist/flask-contacts-app:latest581de1fd6084
sqlite3@3.40.1-2+deb12u1
no fix listed
4
apache/superset:6.1.0:latest16b50bbef664
sqlite3@3.40.1-2+deb12u2
no fix listed
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
sqlite3@3.40.1-2+deb12u1
no fix listed
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
sqlite3@3.40.1-2
no fix listed
3
library/node:ltsbe23f54a88d3
sqlite3@3.40.1-2+deb12u2
no fix listed
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
sqlite3@3.40.1-2+deb12u1
no fix listed
3
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
sqlite3@3.40.1-2+deb12u2
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
sqlite3@3.40.1-2
no fix listed
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
sqlite3@3.40.1-2+deb12u2
no fix listed
3
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
sqlite3@3.40.1-2
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
sqlite3@3.40.1-2+deb12u1
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
sqlite3@3.40.1-2
no fix listed
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
sqlite3@3.40.1-2
no fix listed
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
sqlite3@3.40.1-2
no fix listed
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
sqlite3@3.40.1-2
no fix listed
2
langgenius/dify-sandbox:0.2.009b7e8705673
sqlite3@3.40.1-2
no fix listed
2
library/influxdb:2.7b8d940ca9376
sqlite3@3.40.1-2+deb12u2
no fix listed
2
library/phpmyadmin:5.2.16e75aa8f767c
sqlite3@3.40.1-2+deb12u1
no fix listed
2
library/postgres:17-bookworm051f7b7b3abd
sqlite3@3.40.1-2+deb12u2
no fix listed
2
library/postgres:16.109f23e02d766
sqlite3@3.40.1-2
no fix listed
2
library/postgres:16.24aea012537ed
sqlite3@3.40.1-2
no fix listed
2
library/postgres:16.4e62fbf9d3e2b
sqlite3@3.40.1-2+deb12u1
no fix listed
2
library/python:3.7eedf63967cdb
sqlite3@3.40.1-2
no fix listed
2
locustio/locust:2.32.2a0d4b88e42c1
sqlite3@3.40.1-2
no fix listed
2
louislam/uptime-kuma:2.5.4917318f9d7be
sqlite3@3.40.1-2+deb12u2
no fix listed
2
louislam/uptime-kuma:2.3.29aeb4e51d038
sqlite3@3.40.1-2+deb12u2
no fix listed
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
sqlite3@3.40.1-2+deb12u2
no fix listed
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
sqlite3@3.40.1-2
no fix listed
2
opea/embedding-tei:1.05c9639de61c1
sqlite3@3.40.1-2
no fix listed
2
opea/reranking-tei:1.0e48613afb191
sqlite3@3.40.1-2
no fix listed
2
opea/retriever-redis:1.0eb746b263705
sqlite3@3.40.1-2
no fix listed
2
pgvector/pgvector:0.8.6-pg16-bookworm:pg16ccc6e83d6e35
sqlite3@3.40.1-2+deb12u2
no fix listed
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
sqlite3@3.40.1-2
no fix listed
2
rajnandan1/kener:3.2.1930407afca731
sqlite3@3.40.1-2+deb12u1
no fix listed
2
rotationalio/quarterdeck:0.16.00e7ad3a031dc
sqlite3@3.40.1-2+deb12u2
no fix listed
2
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d469:2.18.12-branch.testing3.88744-f55b3414bd113093583
sqlite3@3.40.1-2
no fix listed
2
uffizzi/controller:latest0344805f267b
sqlite3@3.40.1-2
no fix listed
2
vdiogov/glpi-conteiner:latest6945f84f0058
sqlite3@3.40.1-2
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
sqlite3@3.40.1-2+deb12u2
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
sqlite3@3.40.1-2+deb12u2
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
sqlite3@3.40.1-2+deb12u2
no fix listed
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.