Vulnerability Reportadminer:5.2.1

adminer:5.2.1-standaloneadminer:5.2.1
DIGESTsha256:44926b66af50cc8accc306a0857567e9d1964cfa0214f8e5ce249d25dbdb6801

Executive Summary

Threat Score
74/100CAUTION
Reputation
TRUSTED

This image carries significant risk; production deployment is highly discouraged without strict compensating controls. An attacker could achieve remote code execution via CVE-2025-6965 (sqlite-libs integer truncation) by sending crafted SQL queries, which is the primary concern given Adminer's role as a web-based database manager. CVE-2025-49796 could cause denial of service via crafted XML, though it requires a specific import scenario. Note that the OpenSSL vulnerabilities require processing malformed PKCS#12 or CRL files, which are not typical for Adminer, thus reducing their practical impact.

Vulnerabilities

Vulnerability Log

115 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2025-6965CRITICAL10
sqlite-libs
3.48.0-r2
fixed in 3.48.0-r3
64.9%
Actively Exploited
Directly ExposedContext importance: HIGH
CVE-2025-49796HIGH7.28
libxml2
2.13.4-r5
fixed in 2.13.9-r0
1.4%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-40200MEDIUM6.63
musl
1.2.5-r9
fixed in 1.2.5-r11
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22184MEDIUM6.63
zlib
1.3.1-r2
fixed in 1.3.2-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-69421MEDIUM6.38
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28388MEDIUM6.38
libcrypto3
3.3.3-r0
fixed in 3.3.7-r0
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-28389MEDIUM6.38
libcrypto3
3.3.3-r0
fixed in 3.3.7-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
libcrypto3
3.3.3-r0
fixed in 3.3.7-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-12818MEDIUM6.38
libpq
17.4-r0
fixed in 17.7-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-69421MEDIUM6.38
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28388MEDIUM6.38
libssl3
3.3.3-r0
fixed in 3.3.7-r0
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-28389MEDIUM6.38
libssl3
3.3.3-r0
fixed in 3.3.7-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
libssl3
3.3.3-r0
fixed in 3.3.7-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-32414MEDIUM6.38
libxml2
2.13.4-r5
fixed in 2.13.4-r6
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-32415MEDIUM6.38
libxml2
2.13.4-r5
fixed in 2.13.4-r6
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-49795MEDIUM6.38
libxml2
2.13.4-r5
fixed in 2.13.9-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-6732MEDIUM6.38
libxml2
2.13.4-r5
fixed in 2.13.9-r1
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-27135MEDIUM6.38
nghttp2-libs
1.64.0-r0
fixed in 1.68.1
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-49794MEDIUM6.18
libxml2
2.13.4-r5
fixed in 2.13.9-r0
0.7%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2025-6021MEDIUM6
libxml2
2.13.4-r5
fixed in 2.13.9-r0
1.1%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2025-9231MEDIUM5.9
libcrypto3
3.3.3-r0
fixed in 3.3.5-r0
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2025-9231MEDIUM5.9
libssl3
3.3.3-r0
fixed in 3.3.5-r0
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-6475MEDIUM5.7
libpq
17.4-r0
fixed in 17.10-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-9230MEDIUM5.6
libcrypto3
3.3.3-r0
fixed in 3.3.5-r0
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2025-9230MEDIUM5.6
libssl3
3.3.3-r0
fixed in 3.3.5-r0
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2025-62408MEDIUM5.02
c-ares
1.34.5-r0
fixed in 1.34.6-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
libcrypto3
3.3.3-r0
fixed in 3.3.7-r0
1.0%
Theoretical Threat
Directly Exposed
CVE-2025-15468MEDIUM5.02
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-66199MEDIUM5.02
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69420MEDIUM5.02
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-22796MEDIUM5.02
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-4207MEDIUM5.02
libpq
17.4-r0
fixed in 17.5-r0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
libssl3
3.3.3-r0
fixed in 3.3.7-r0
1.0%
Theoretical Threat
Directly Exposed
CVE-2025-15468MEDIUM5.02
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-66199MEDIUM5.02
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69420MEDIUM5.02
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-22796MEDIUM5.02
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-22795MEDIUM4.67
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22795MEDIUM4.67
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-6042MEDIUM4.67
musl
1.2.5-r9
fixed in 1.2.5-r10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-29088MEDIUM4.67
sqlite-libs
3.48.0-r2
fixed in 3.48.0-r4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib
1.3.1-r2
fixed in 1.3.2-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-34743MEDIUM4.5
xz-libs
5.6.3-r1
fixed in 5.8.3-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-15467MEDIUM4.06
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
48.7%
High Exploitation Risk
Post-Exploit
CVE-2025-15467MEDIUM4.06
libssl3
3.3.3-r0
fixed in 3.3.6-r0
48.7%
High Exploitation Risk
Post-Exploit
CVE-2025-15467MEDIUM4.06
openssl
3.3.3-r0
fixed in 3.3.6-r0
48.7%
High Exploitation Risk
Post-Exploit
CVE-2025-68160MEDIUM4
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-68160MEDIUM4
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-40200LOW3.98
musl-utils
1.2.5-r9
fixed in 1.2.5-r11
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-69277LOW3.82
libsodium
1.0.20-r0
fixed in 1.0.20-r1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-2003LOW3.65
libpq
17.4-r0
fixed in 17.8-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-6474LOW3.65
libpq
17.4-r0
fixed in 17.10-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-12817LOW3.65
libpq
17.4-r0
fixed in 17.7-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-69418LOW3.4
libcrypto3
3.3.3-r0
fixed in 3.3.6-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-69418LOW3.4
libssl3
3.3.3-r0
fixed in 3.3.6-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-4947LOW3.31
curl
8.12.1-r1
fixed in 8.14.0-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-4947LOW3.31
libcurl
8.12.1-r1
fixed in 8.14.0-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-9086LOW3.18
curl
8.12.1-r1
fixed in 8.14.1-r2
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2025-9086LOW3.18
libcurl
8.12.1-r1
fixed in 8.14.1-r2
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2025-9232LOW3.1
libcrypto3
3.3.3-r0
fixed in 3.3.5-r0
2.0%
Low-Moderate Risk
Directly Exposed
CVE-2025-9232LOW3.1
libssl3
3.3.3-r0
fixed in 3.3.5-r0
2.0%
Low-Moderate Risk
Directly Exposed
CVE-2026-31790LOW3.01
openssl
3.3.3-r0
fixed in 3.3.7-r0
1.0%
Theoretical Threat
Post-Exploit
CVE-2025-15468LOW3.01
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.7%
Theoretical Threat
Post-Exploit
CVE-2025-66199LOW3.01
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-69420LOW3.01
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-22796LOW3.01
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-31789LOW3
libcrypto3
3.3.3-r0
fixed in 3.3.7-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-31789LOW3
libssl3
3.3.3-r0
fixed in 3.3.7-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-31789LOW3
openssl
3.3.3-r0
fixed in 3.3.7-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-6042LOW2.8
musl-utils
1.2.5-r9
fixed in 1.2.5-r10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-22795LOW2.8
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-34743LOW2.7
xz
5.6.3-r1
fixed in 5.8.3-r0
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-8714LOW2.69
libpq
17.4-r0
fixed in 17.6-r0
0.7%
Theoretical Threat
Post-Exploit
CVE-2025-8715LOW2.69
libpq
17.4-r0
fixed in 17.6-r0
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-2004LOW2.69
libpq
17.4-r0
fixed in 17.8-r0
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-2005LOW2.69
libpq
17.4-r0
fixed in 17.8-r0
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-2006LOW2.69
libpq
17.4-r0
fixed in 17.8-r0
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-6473LOW2.69
libpq
17.4-r0
fixed in 17.10-r0
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-6638LOW2.69
libpq
17.4-r0
fixed in 17.10-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-8713LOW2.63
libpq
17.4-r0
fixed in 17.6-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-5399LOW2.58
curl
8.12.1-r1
fixed in 8.14.1-r0
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-5399LOW2.58
libcurl
8.12.1-r1
fixed in 8.14.1-r0
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-6477LOW2.57
libpq
17.4-r0
fixed in 17.10-r0
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-2007LOW2.51
libpq
17.4-r0
fixed in 17.8-r0
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-6478LOW2.51
libpq
17.4-r0
fixed in 17.10-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-28387LOW2.48
libcrypto3
3.3.3-r0
fixed in 3.3.7-r0
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-28387LOW2.48
libssl3
3.3.3-r0
fixed in 3.3.7-r0
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-28387LOW2.48
openssl
3.3.3-r0
fixed in 3.3.7-r0
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-5025LOW2.45
curl
8.12.1-r1
fixed in 8.14.0-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-10148LOW2.45
curl
8.12.1-r1
fixed in 8.14.1-r2
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-5025LOW2.45
libcurl
8.12.1-r1
fixed in 8.14.0-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-10148LOW2.45
libcurl
8.12.1-r1
fixed in 8.14.1-r2
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-68160LOW2.4
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-69421LOW2.29
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-28388LOW2.29
openssl
3.3.3-r0
fixed in 3.3.7-r0
0.9%
Theoretical Threat
Post-Exploit
CVE-2026-28389LOW2.29
openssl
3.3.3-r0
fixed in 3.3.7-r0
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-28390LOW2.29
openssl
3.3.3-r0
fixed in 3.3.7-r0
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-69419LOW2.26
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-9231LOW2.12
openssl
3.3.3-r0
fixed in 3.3.5-r0
2.3%
Low-Moderate Risk
Post-Exploit
CVE-2025-6170LOW2.12
libxml2
2.13.4-r5
fixed in 2.13.9-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-69418LOW2.04
openssl
3.3.3-r0
fixed in 3.3.6-r0
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-9230LOW2.02
openssl
3.3.3-r0
fixed in 3.3.5-r0
1.8%
Low-Moderate Risk
Post-Exploit
CVE-2025-9232LOW1.86
openssl
3.3.3-r0
fixed in 3.3.5-r0
2.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-46394LOW1.68
busybox
1.37.0-r12
fixed in 1.37.0-r14
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-46394LOW1.68
busybox-binsh
1.37.0-r12
fixed in 1.37.0-r14
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-46394LOW1.68
ssl_client
1.37.0-r12
fixed in 1.37.0-r14
0.1%
Theoretical Threat
Post-Exploit
CVE-2024-58251NONE0
busybox
1.37.0-r12
fixed in 1.37.0-r14
0.2%
Theoretical Threat
Not Applicable
CVE-2024-58251NONE0
busybox-binsh
1.37.0-r12
fixed in 1.37.0-r14
0.2%
Theoretical Threat
Not Applicable
CVE-2026-6472NONE0
libpq
17.4-r0
fixed in 17.10-r0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-6476NONE0
libpq
17.4-r0
fixed in 17.10-r0
0.3%
Theoretical Threat
Not Applicable
CVE-2026-6479NONE0
libpq
17.4-r0
fixed in 17.10-r0
0.5%
Theoretical Threat
Not Applicable
CVE-2026-6637NONE0
libpq
17.4-r0
fixed in 17.10-r0
0.4%
Theoretical Threat
Not Applicable
CVE-2024-58251NONE0
ssl_client
1.37.0-r12
fixed in 1.37.0-r14
0.2%
Theoretical Threat
Not Applicable