aws / aws/aws-lambda-base-images
CVE-2025-13836 (CRITICAL) in python 3.13 base image
Open
- Dominant language
- No language data
- Stars
- 777
- Forks
- 118
- PR merge metrics
- No merged PRs in 30d
Description
public.ecr.aws/lambda/python:3.13 is currently on 3.13.9 which has the following CVE against it: CVE-2025-13836
CVSS 3 has this as a CRITICAL (CVSS has it as MEDIUM) https://nvd.nist.gov/vuln/detail/CVE-2025-13836
Please could a new build be released with 3.13.11 to mitigate this.
Thanks
Contributor guide
Assessment
This issue has not been assessed yet.