StackRadar

CVE-2025-9165

Low

Advisory

Published 19 Aug 2025In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
2.5
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
351
of 17,781 indexed, latest versions
Container images
355
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 351 of 17,781 indexed charts deploy, on 355 images.

Affected packageAffected versionsFixed inImages
tiffdeb4.0.3-7ubuntu0.9, 4.0.6-1ubuntu0.2, 4.0.6-1ubuntu0.4, 4.0.6-1ubuntu0.5+37 more4.0.3-7ubuntu0.11+esm16, 4.0.6-1ubuntu0.8+esm19, 4.0.9-5ubuntu0.10+esm9, 4.1.0+git191117-2ubuntu0.20.04.14+esm2+3 more324
tiffapk4.7.0-r04.7.1-r031
OSV records
ALPINE-CVE-2025-9165DEBIAN-CVE-2025-9165UBUNTU-CVE-2025-9165
Also known as
USN-7783-1

Charts affected

351 by stars
ChartLatestAffected imagesRadar Score
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2025-9165.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
tiff@4.5.0-6+deb12u1
no fix listed

Open the chart page →

7,673

Container images carrying it

355 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
mediagis/nominatim:4.2d0eae7b51374
tiff@4.3.0-6ubuntu0.7
4.3.0-6ubuntu0.12
1
merlos/zookeeper:3.9.3a38fc7e09ed7
tiff@4.5.0-6+deb12u1
no fix listed
1
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
tiff@4.5.0-6+deb12u2
no fix listed
1
mlikiowa/napcat-docker:latest1336a777f9a4
tiff@4.3.0-6ubuntu0.10
4.3.0-6ubuntu0.12
1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
tiff@4.5.0-6+deb12u4
no fix listed
1
moreillon/api-proxy:latestd7d4a5463525
tiff@4.5.0-6+deb12u2
no fix listed
1
moreillon/camera-viewer:lateste418cc694bd5
tiff@4.5.0-6+deb12u2
no fix listed
1
moreillon/food-manager:lateste8fd856e593d
tiff@4.5.0-6+deb12u2
no fix listed
1
moreillon/group-manager:latest3caa8f710ee0
tiff@4.5.0-6+deb12u3
no fix listed
1
moreillon/user-manager-front:v5.1.06597e6b98d21
tiff@4.5.0-6+deb12u1
no fix listed
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
tiff@4.5.0-6
no fix listed
1
muhammedgamal/fp23:latest74b4cd69b6fa
tiff@4.5.0-6+deb12u1
no fix listed
1
nethermind/nethermind:1.14.615517708c3b6
tiff@4.3.0-6ubuntu0.2
4.3.0-6ubuntu0.12
1
nginxdemos/hello:plain-text751bf8933179
tiff@4.7.0-r0
4.7.1-r0
1
nginxdemos/hello:0.4b28d1e16c676
tiff@4.7.0-r0
4.7.1-r0
1
nginxinc/nginx-unprivileged:1.27.4-alpine62a904036bfc
tiff@4.7.0-r0
4.7.1-r0
1
nginxinc/nginx-unprivileged:1.29.0-alpine3.2282dcf28da5a8
tiff@4.7.0-r0
4.7.1-r0
1
nirmalnaveen/supermario:latest8541a39162f3
tiff@4.5.0-6
no fix listed
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.10+esm9
1
oneuptime/probe:release6b2d98713711
tiff@4.5.0-6+deb12u4
no fix listed
1
opea/codegen-ui:1.02bee4eb66f3e
tiff@4.5.0-6+deb12u1
no fix listed
1
opea/codetrans-ui:1.03ef121f34610
tiff@4.5.0-6+deb12u1
no fix listed
1
opea/docsum-ui:1.07f854e9bffaf
tiff@4.5.0-6+deb12u1
no fix listed
1
opea/speecht5:1.0249afad3d268
tiff@4.5.0-6+deb12u1
no fix listed
1
openbas/caldera-server:5.1.0a277796d9724
tiff@4.5.0-6+deb12u2
no fix listed
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
tiff@4.5.0-6+deb12u4
no fix listed
1
opencsghq/csgship-portal:v1.2.1865814dc87a1
tiff@4.7.0-r0
4.7.1-r0
1
opendatacube/explorer:latest120457ffcd69
tiff@4.5.1+git230720-4ubuntu2.3
4.5.1+git230720-4ubuntu2.4
1
opendatacube/pipelines:wofs-1.225d810e8504b8
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.10+esm9
1
opendatacube/restcube:latest91870111837c
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.10+esm9
1
opendatacube/wms:latest1b90cdf68831
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.10+esm9
1
opendatacube/wps:latest80df355a660b
tiff@4.3.0-6ubuntu0.10
4.3.0-6ubuntu0.12
1
openelevation/open-elevation:latest82fb21612e86
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.14+esm2
1
openkm/openkm-ce:6.3.113bc465a7461b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.14+esm2
1
openproject/hocuspocus:release-338001b288dc1359dfb5
tiff@4.5.0-6+deb12u2
no fix listed
1
opsmx11/issuegen:v2.1.05c50ca123d88
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm16
1
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
tiff@4.7.0-r0
4.7.1-r0
1
owncloud/server:10.15.051d9b74fc2a8
tiff@4.1.0+git191117-2ubuntu0.20.04.13
4.1.0+git191117-2ubuntu0.20.04.14+esm2
1
penpotapp/backend:2.2.147853d9bb9dd
tiff@4.3.0-6ubuntu0.10
4.3.0-6ubuntu0.12
1
penpotapp/exporter:2.2.15c835ffd87ab
tiff@4.3.0-6ubuntu0.10
4.3.0-6ubuntu0.12
1
phan2410/dummy-service:0.0.89c6ed6de26ca
tiff@4.5.0-6+deb12u2
no fix listed
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
tiff@4.5.0-6+deb12u2
no fix listed
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
tiff@4.3.0-6ubuntu0.7
4.3.0-6ubuntu0.12
1
photoprism/photoprism:220629-jammy2954334adbda
tiff@4.3.0-6
4.3.0-6ubuntu0.12
1
photoprism/photoprism:240711-cefc6fd632ca74
tiff@4.5.1+git230720-4ubuntu2.1
4.5.1+git230720-4ubuntu2.4
1
pk910/powfaucet:v2-stable3dcae6a62896
tiff@4.5.0-6+deb12u2
no fix listed
1
praravind1801/helmimages:3.0.0f29d637b9ce1
tiff@4.5.0-6+deb12u1
no fix listed
1
project2team4/react:latest3ff031a08887
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.14+esm2
1
rocketadmin/rocketadmin:1.17.710955ef540b9
tiff@4.5.0-6+deb12u4
no fix listed
1
rocketchat/freeswitch:stablecfba5c20a5cc
tiff@4.5.0-6+deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.