On November 24, 2025, Docker Hardened Images resolved CVE-2025-12735 in the Kibana project, which is the visualization and user
interface layer for Elasticsearch.This CVE is a critical remote
code execution vulnerability that scored 9.8 on the CVSS
scale.While images from other hardened image vendors were still
carrying the vulnerability, Docker’s security team and tooling not
only patched the CVE for Docker Hardened Images users, but
also submitted the fix to the upstream LangChain.js project.