StackRadar

CVE-2025-7709

Medium

Advisory

Published 8 Sept 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.003
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
608
of 17,787 indexed, latest versions
Container images
601
deployed by those charts
Fix available
2 of 2
affected packages

lemon-3.51.2-1.1 on GA media

Carried by container images the latest versions of 608 of 17,787 indexed charts deploy, on 601 images.

Affected packageAffected versionsFixed inImages
sqlite3deb3.40.1-2, 3.40.1-2+deb12u1, 3.40.1-2+deb12u2, 3.45.1-1ubuntu2+4 more3.45.1-1ubuntu2.5, 3.46.1-7+deb13u1596
sqlite3rpm3.28.0-lp151.2.3.1, 3.50.2-150000.3.33.13.51.2-1.1, 3.51.2-150000.3.36.15
OSV records
DEBIAN-CVE-2025-7709UBUNTU-CVE-2025-7709openSUSE-SU-2026:10171-1SUSE-SU-2026:0432-1
Also known as
USN-7751-1

Charts affected

608 by stars
ChartLatestAffected imagesRadar Score
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
sqlite3@3.40.1-2
no fix listed

Open the chart page →

8,858
welcome-elos-webappwelcome-elos-webappVerified publisher2.0.01 of 1See more

welcome-elos-webapp welcome-elos-webapp 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
pococze/python-hello-elos:2.0.07a1aab425e51
sqlite3@3.40.1-2
no fix listed

Open the chart page →

2,538
giteawenerme12.7.01 of 4See more

gitea wenerme 12.7.0

1 of the 4 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

8,842
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

8,824
keycloakwiremindVerified publisher25.3.11 of 2See more

keycloak wiremind 25.3.1

1 of the 2 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

7,643
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
sqlite3@3.40.1-2
no fix listed

Open the chart page →

5,548
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

11,592
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2025-7709.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
sqlite3@3.40.1-2
no fix listed
hamzaarshad10/querypodpy:1.7154f38e8668e
sqlite3@3.40.1-2
no fix listed
murtazashah46/helmfile:latest4d11726cf803
sqlite3@3.40.1-2
no fix listed

Open the chart page →

13,197

Container images carrying it

601 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
louislam/uptime-kuma:2.4.091e963bfda56
sqlite3@3.40.1-2+deb12u2
no fix listed
1
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
sqlite3@3.40.1-2+deb12u2
no fix listed
1
makersquad/harp-proxy:0.8.1a40dd258c527
sqlite3@3.40.1-2+deb12u1
no fix listed
1
marcoimme/oidcmock:latestb6035c0721a8
sqlite3@3.46.1-7
3.46.1-7+deb13u1
1
martinhelmich/typo3:12.4c83a4f3fd7ae
sqlite3@3.40.1-2+deb12u2
no fix listed
1
mathesar/mathesar:0.12.0091757cb01fe
sqlite3@3.40.1-2+deb12u2
no fix listed
1
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
sqlite3@3.40.1-2+deb12u1
no fix listed
1
mautic/mautic:7-apacheeb8cc73d97e1
sqlite3@3.40.1-2+deb12u2
no fix listed
1
merlos/zookeeper:3.9.3a38fc7e09ed7
sqlite3@3.40.1-2+deb12u1
no fix listed
1
middlewareeng/middleware:0.3.1747d880812f1
sqlite3@3.40.1-2+deb12u1
no fix listed
1
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
sqlite3@3.40.1-2+deb12u1
no fix listed
1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
sqlite3@3.40.1-2+deb12u2
no fix listed
1
moreillon/api-proxy:latestd7d4a5463525
sqlite3@3.40.1-2+deb12u1
no fix listed
1
moreillon/food-manager:lateste8fd856e593d
sqlite3@3.40.1-2+deb12u1
no fix listed
1
moreillon/group-manager:latest3caa8f710ee0
sqlite3@3.40.1-2+deb12u2
no fix listed
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
sqlite3@3.40.1-2
no fix listed
1
muhammedgamal/fp23:latest74b4cd69b6fa
sqlite3@3.40.1-2
no fix listed
1
murtazashah46/helmfile:latest4d11726cf803
sqlite3@3.40.1-2
no fix listed
1
ncsa/checks:main0b738bbc8d70
sqlite3@3.46.1-7
3.46.1-7+deb13u1
1
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
sqlite3@3.46.1-7
3.46.1-7+deb13u1
1
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
sqlite3@3.40.1-2+deb12u2
no fix listed
1
offchainlabs/nitro-node:v3.1.0-7d1d84ce95865866129
sqlite3@3.40.1-2
no fix listed
1
oled01/automx2:2025.1.105d3e398e675
sqlite3@3.40.1-2+deb12u1
no fix listed
1
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
sqlite3@3.40.1-2+deb12u1
no fix listed
1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
sqlite3@3.40.1-2+deb12u1
no fix listed
1
omkara25/simple-microservice-app-user-service:v2d62cba548580
sqlite3@3.40.1-2+deb12u1
no fix listed
1
oneuptime/probe:release6b2d98713711
sqlite3@3.40.1-2+deb12u2
no fix listed
1
opea/asr:1.025dd26d9cd09
sqlite3@3.40.1-2
no fix listed
1
opea/chatqna:1.038c51b791efa
sqlite3@3.40.1-2
no fix listed
1
opea/codegen:1.058f91683892d
sqlite3@3.40.1-2
no fix listed
1
opea/codegen-ui:1.02bee4eb66f3e
sqlite3@3.40.1-2
no fix listed
1
opea/codetrans:1.0e2436483b73d
sqlite3@3.40.1-2
no fix listed
1
opea/codetrans-ui:1.03ef121f34610
sqlite3@3.40.1-2
no fix listed
1
opea/docsum:1.03eaa91849512
sqlite3@3.40.1-2
no fix listed
1
opea/docsum-ui:1.07f854e9bffaf
sqlite3@3.40.1-2
no fix listed
1
opea/guardrails-tgi:1.0262c6048aab8
sqlite3@3.40.1-2
no fix listed
1
opea/guardrails-tgi:latestf68bec6a1271
sqlite3@3.40.1-2+deb12u1
no fix listed
1
opea/llm-docsum-tgi:1.002f9e8fa5d71
sqlite3@3.40.1-2
no fix listed
1
opea/speecht5:1.0249afad3d268
sqlite3@3.40.1-2
no fix listed
1
opea/tts:1.0257ae94709e9
sqlite3@3.40.1-2
no fix listed
1
opea/web-retriever-chroma:1.0fe08165d7770
sqlite3@3.40.1-2
no fix listed
1
openbas/caldera-server:5.1.0a277796d9724
sqlite3@3.40.1-2+deb12u1
no fix listed
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
sqlite3@3.40.1-2+deb12u1
no fix listed
1
openproject/hocuspocus:release-338001b288dc1359dfb5
sqlite3@3.40.1-2+deb12u1
no fix listed
1
openvino/model_server:2025.2.11e7cd1d70cc1
sqlite3@3.45.1-1ubuntu2.3
3.45.1-1ubuntu2.5
1
pgvector/pgvector:pg17cf134a767f47
sqlite3@3.40.1-2+deb12u2
no fix listed
1
phan2410/dummy-service:0.0.89c6ed6de26ca
sqlite3@3.40.1-2+deb12u1
no fix listed
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
sqlite3@3.40.1-2+deb12u1
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
sqlite3@3.45.1-1ubuntu2
3.45.1-1ubuntu2.5
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
sqlite3@3.46.1-7
3.46.1-7+deb13u1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.