StackRadar

CVE-2025-8941

High

Advisory

Published 13 Aug 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.003
19th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,450
of 17,790 indexed, latest versions
Container images
1,333
deployed by those charts
Fix available
1 of 2
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 1,450 of 17,790 indexed charts deploy, on 1,333 images.

Affected packageAffected versionsFixed inImages
pamdeb1.5.2-6, 1.5.2-6+deb12u1, 1.5.2-6+deb12u2, 1.7.0-5+1 moreno fix listed1,269
pamrpm1.1.8-22.el7, 1.1.8-23.el7, 1.3.1-4.el8, 1.3.1-8.el8+6 more0:1.1.8-23.el7_9.2, 0:1.3.1-8.el8_2.2, 0:1.3.1-14.el8_4.2, 0:1.3.1-16.el8_6.3+3 more64
OSV records
DEBIAN-CVE-2025-8941RHSA-2025:15101RHSA-2025:15102RHSA-2025:15103RHSA-2025:15104RHSA-2025:15105RHSA-2025:15106RHSA-2025:15107

Charts affected

1,450 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

1,333 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
jenkins/jenkins:2.440.3-jdk17de4fea113221
pam@1.5.2-6+deb12u1
no fix listed
1
jertel/elastalert2:2.31.03cbf63f9b7dc
pam@1.7.0-5
no fix listed
1
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
pam@1.5.2-6+deb12u1
no fix listed
1
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
pam@1.5.2-6+deb12u1
no fix listed
1
jodogne/orthanc-plugins:latest6ff510aa29c2
pam@1.7.0-5
no fix listed
1
johly/airtrail:v3.11.19f702b91e0e7
pam@1.5.2-6+deb12u2
no fix listed
1
joplin/server:latest3f7b852959aa
pam@1.5.2-6+deb12u2
no fix listed
1
jordan/icinga2:latestf75025fe8ea8
pam@1.5.2-6+deb12u2
no fix listed
1
journeyapps/powersync-service:latestbf46f66e5dcc
pam@1.7.0-5
no fix listed
1
jpgouin/openldap:2.6.9-fixbfdd0088c776
pam@1.5.2-6+deb12u1
no fix listed
1
juicedata/juicefs-csi-driver:v0.32.595008ba63318
pam@1.5.2-6+deb12u1
no fix listed
1
kimai/kimai2:2.67.03084f1e5ecdc
pam@1.5.2-6+deb12u2
no fix listed
1
kinseii/wazuh-agent:4.14.17160eb143728
pam@1.5.2-6+deb12u1
no fix listed
1
kitware/cdash:v5.3.0d7767d9b9da4
pam@1.7.0-5
no fix listed
1
kixote/typemill4e9dff179519
pam@1.7.0-5
no fix listed
1
kixote/typemill628f79a08cc7
pam@1.7.0-5
no fix listed
1
knspar/phronetis-operator:0.1.60c4f0543ee58
pam@1.5.2-6+deb12u1
no fix listed
1
kserve/models-web-app:v0.13.073486345a602
pam@1.5.2-6+deb12u1
no fix listed
1
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
pam@1.5.2-6+deb12u1
no fix listed
1
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
pam@1.5.2-6+deb12u1
no fix listed
1
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
pam@1.5.2-6+deb12u1
no fix listed
1
kubegems/redis:7.2.5-debian-12-r2870ee3a77add
pam@1.5.2-6+deb12u1
no fix listed
1
kubeshop/testkube-minio:2025.10d8e1af6aca99
pam@1.5.2-6+deb12u2
no fix listed
1
kuzwolka/aws9:main1ad759b961b1
pam@1.5.2-6+deb12u1
no fix listed
1
kuzwolka/aws9:news3e8880fbbb96
pam@1.5.2-6+deb12u1
no fix listed
1
kuzwolka/aws9:blog4a7707410bf1
pam@1.5.2-6+deb12u1
no fix listed
1
kuzwolka/aws9:shop84a9d9766345
pam@1.5.2-6+deb12u1
no fix listed
1
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
pam@1.7.0-5
no fix listed
1
kyovint/kyoimgusers:1.0.080084149156e
pam@1.7.0-5
no fix listed
1
labs64/traefik-authproxy:0.0.3dfc6086dfbce
pam@1.7.0-5
no fix listed
1
laly9999/node-app:1dd0e503913e1
pam@1.5.2-6+deb12u1
no fix listed
1
langflowai/langflow-frontend:latest54f67f1961fe
pam@1.5.2-6+deb12u2
no fix listed
1
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
pam@1.5.2-6+deb12u2
no fix listed
1
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
pam@1.5.2-6+deb12u2
no fix listed
1
langgenius/dify-api:1.0.0066035f93856
pam@1.5.2-6+deb12u1
no fix listed
1
langgenius/dify-api:1.16.1dcefa5f7c47c
pam@1.5.2-6+deb12u2
no fix listed
1
langgenius/dify-api:0.6.11fca918260dd6
pam@1.5.2-6+deb12u1
no fix listed
1
langgenius/dify-sandbox:0.2.15750e1111426e
pam@1.7.0-5
no fix listed
1
lib42/jackett:latesta55596cda383
pam@1.5.2-6+deb12u1
no fix listed
1
library/buildpack-deps:scmac978b783657
pam@1.7.0-5
no fix listed
1
library/cassandra:4.0093ee8ee5eb2
pam@1.5.2-6+deb12u2
no fix listed
1
library/couchdb:3.4.22817ad50b5c5
pam@1.5.2-6+deb12u1
no fix listed
1
library/debian:12.5-slim67f3931ad8cb
pam@1.5.2-6+deb12u1
no fix listed
1
library/debian:bookworm6ebd97fa83de
pam@1.5.2-6+deb12u2
no fix listed
1
library/debian:12.12-slimd5d3f9c23164
pam@1.5.2-6+deb12u1
no fix listed
1
library/debian:latestf324c7ff5432
pam@1.7.0-5
no fix listed
1
library/drupal:11.4.6-php8.5-apache-bookworm28f7931ecbcb
pam@1.5.2-6+deb12u2
no fix listed
1
library/ghost:6.37.01ef2e532ca4d
pam@1.5.2-6+deb12u2
no fix listed
1
library/ghost:6.25.12654b1e90413
pam@1.5.2-6+deb12u2
no fix listed
1
library/ghost:6.41.129773d6be407
pam@1.5.2-6+deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.