StackRadar

CVE-2025-40909

Medium

Advisory

Published 30 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,267
of 17,787 indexed, latest versions
Container images
1,323
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 1,267 of 17,787 indexed charts deploy, on 1,323 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+29 more5.34.0-3ubuntu1.5, 5.36.0-7+deb12u3, 5.38.2-3.2ubuntu0.21,297
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+8 more0:1.28-423.el8_10, 0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f756, 0:5.74-481.1.el9_6+3 more26
perl-Carprpm1.42-396.el80:1.50-439.module+el8.6.0+13324+628a2397, 0:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.6.0+13324+628a2397, 0:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.6.0+13324+628a2397, 0:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.6.0+13324+628a2397, 0:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.6.0+13324+628a2397, 1:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.6.0+13324+628a2397, 0:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.6.0+13324+628a2397, 4:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.6.0+13324+628a2397, 4:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.6.0+13324+628a2397, 0:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.6.0+13324+628a2397, 1:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.6.0+13324+628a2397, 0:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.6.0+13324+628a2397, 0:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.6.0+13324+628a2397, 4:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.6.0+13324+628a2397, 1:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.6.0+13324+628a2397, 1:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.6.0+13324+628a2397, 0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.6.0+13324+628a2397, 0:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.6.0+13324+628a2397, 1:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.6.0+13324+628a2397, 1:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.6.0+13324+628a2397, 0:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.6.0+13324+628a2397, 1:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.6.0+13324+628a2397, 4:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.6.0+13324+628a2397, 1:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.6.0+13324+628a2397, 0:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.6.0+13324+628a2397, 0:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.6.0+13324+628a2397, 0:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.6.0+13324+628a2397, 2:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.6.0+13324+628a2397, 0:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.6.0+13324+628a2397, 0:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.6.0+13324+628a2397, 0:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.6.0+13324+628a2397, 0:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.6.0+13324+628a2397, 0:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.6.0+13324+628a2397, 0:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
OSV records
DEBIAN-CVE-2025-40909RHSA-2025:11545RHSA-2025:11804RHSA-2025:11805RHSA-2026:37070RHSA-2026:8096RLSA-2025:11804UBUNTU-CVE-2025-40909openSUSE-SU-2025:15258-1
Also known as
USN-7678-1

Charts affected

1,267 by stars
ChartLatestAffected imagesRadar Score
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

23,255
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

5,910
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

17,836
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
perl@5.26.1-6ubuntu0.3
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
perl@5.26.1-6ubuntu0.3
no fix listed
elastictranscoder/transcoder:627e21dcb4a0327029e6
perl@5.26.1-6ubuntu0.3
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

58,225
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

9,786
magistralamagistrala-devopsVerified publisher0.16.22 of 42See more

magistrala magistrala-devops 0.16.2

2 of the 42 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31-latestcaa5b411be16
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.5
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5

Open the chart page →

24,488
docker-mailservermailserverVerified publisher0.2.651 of 9See more

docker-mailserver mailserver 0.2.65

1 of the 9 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
mvance/unbound:1.22.076906da36d18
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

10,908
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
perl@5.36.0-7
5.36.0-7+deb12u3

Open the chart page →

6,722
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

4,150
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

8,351
mayastormayastorVerified publisher2.12.12 of 31See more

mayastor mayastor 2.12.1

2 of the 31 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

21,178
eoloplantmca-eoloplaner0.1.03 of 7See more

eoloplant mca-eoloplaner 0.1.0

3 of the 7 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
hugohg34/toposervice:0.0.2812a03b3f274
perl@5.30.0-9ubuntu0.2
no fix listed
library/mongo:5.0.6-focal8e70544b6c76
perl@5.30.0-9ubuntu0.2
no fix listed
library/rabbitmq:3.9-management8a279e9396a8
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5

Open the chart page →

29,712
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
perl@5.30.0-9ubuntu0.2
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

18,712
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5

Open the chart page →

3,707
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2

Open the chart page →

11,478
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
perl@5.30.0-9ubuntu0.2
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

18,712
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
perl@5.30.0-9ubuntu0.2
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

18,712
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

5,849
memgptmemgptVerified publisher0.3.191 of 2See more

memgpt memgpt 0.3.19

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ankane/pgvector:v0.5.1d3a9d8ac27bb
perl@5.36.0-7
5.36.0-7+deb12u3

Open the chart page →

5,872
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

4,786
kubeaddons-catalogmesosphere0.1.161 of 2See more

kubeaddons-catalog mesosphere 0.1.16

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
perl@5.30.0-9build1
no fix listed

Open the chart page →

12,049
kube-prometheus-stackmesosphere87.16.01 of 7See more

kube-prometheus-stack mesosphere 87.16.0

1 of the 7 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

6,763
kudomesosphere0.1.41 of 1See more

kudo mesosphere 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
kudobuilder/controller:v0.9.069072d979708
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

5,688
nvidiamesosphere0.4.42 of 2See more

nvidia mesosphere 0.4.4

2 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
perl@5.30.0-9ubuntu0.2
no fix listed
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
perl@5.22.1-9ubuntu0.9
no fix listed

Open the chart page →

10,478
dexmesosphere-stable2.14.12 of 5See more

dex mesosphere-stable 2.14.1

2 of the 5 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
perl@5.22.1-9
no fix listed

Open the chart page →

18,583
istiomesosphere-stable1.25.11 of 2See more

istio mesosphere-stable 1.25.1

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

4,786
istio-helm-cnimesosphere-stable1.23.61 of 1See more

istio-helm-cni mesosphere-stable 1.23.6

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
istio/install-cni:1.23.6ab34c4740f44
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.2

Open the chart page →

3,322
istio-helm-istiodmesosphere-stable1.23.61 of 2See more

istio-helm-istiod mesosphere-stable 1.23.6

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
istio/pilot:1.23.69c3d6a218181
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.2

Open the chart page →

4,644
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
perl@5.30.0-9build1
no fix listed

Open the chart page →

68,330
kube-prometheus-stackmesosphere-stable75.9.11 of 7See more

kube-prometheus-stack mesosphere-stable 75.9.1

1 of the 7 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

9,543
localpathprovisionermesosphere-stable0.1.21 of 1See more

localpathprovisioner mesosphere-stable 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
perl@5.22.1-9ubuntu0.5
no fix listed

Open the chart page →

17,966
valkeymesosphere-stable3.0.221 of 1See more

valkey mesosphere-stable 3.0.22

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/valkey:8.1.3-debian-12-r1a185655855b3
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

2,559
istio-operatormetakube1.12.01 of 1See more

istio-operator metakube 1.12.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
istio/operator:1.12.06cfce8a071b9
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

8,940
elasticmicroboxlabs0.3.01 of 1See more

elastic microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/elasticsearch:8.17.32cc40b15dff8
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

4,295
postgresmicroboxlabs0.3.01 of 1See more

postgres microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/postgres:16.6557fea37a744
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

3,699
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

12,862
folding-at-homemidokura-communityVerified publisher0.0.31 of 1See more

folding-at-home midokura-community 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
linuxserver/foldingathome:7.6.219a997426d71e
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2

Open the chart page →

2,938
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

11,254
teimilvus-helm1.6.01 of 1See more

tei milvus-helm 1.6.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

3,063
mini-blogmini-blog-helm0.1.01 of 3See more

mini-blog mini-blog-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

12,637
MINTmint8.0.22 of 15See more

MINT mint 8.0.2

2 of the 15 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
perl@5.30.0-9ubuntu0.2
no fix listed
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

42,983
session-scalermiqm0.1.01 of 1See more

session-scaler miqm 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
miqm/session-scaler:0.1.0c5c211717d9b
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

2,865
mariadbmmontesVerified publisher0.3.01 of 1See more

mariadb mmontes 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/mariadb:10.7.307e06f2e7ae9
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

10,109
mongodbmmontesVerified publisher0.5.01 of 1See more

mongodb mmontes 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/mongo:4.4.1305678ae4e5e1
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

7,148
account-lookup-servicemojaloop13.0.01 of 4See more

account-lookup-service mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

11,734
account-lookup-service-adminmojaloop13.0.01 of 4See more

account-lookup-service-admin mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

11,734
admin-api-svcmojaloop12.0.01 of 4See more

admin-api-svc mojaloop 12.0.0

1 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

12,147
backendmojaloop0.1.01 of 6See more

backend mojaloop 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:8.4.5-debian-12-r07089d796fc9b
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

16,111
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

11,518
mojaloopmojaloop14.0.01 of 6See more

mojaloop mojaloop 14.0.0

1 of the 6 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

19,265

Container images carrying it

1,323 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
library/wordpress:6.4.3-apache8ae66efb09a2
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
library/zookeeper:3.8-temurin55d1e5b2e601
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5
1
lightbend/curl:7.47.0b0c9894ac8dd
perl@5.22.1-9ubuntu0.5
no fix listed
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
perl@5.26.1-6ubuntu0.5
no fix listed
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
perl@5.30.0-9ubuntu0.2
no fix listed
1
linuxserver/cloud9:latest45c5fe102ff3
perl@5.26.1-6ubuntu0.5
no fix listed
1
linuxserver/code-server:4.10.1a5e43a05ae79
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.5
1
linuxserver/codimd:latestb801bbcf6386
perl@5.26.1-6ubuntu0.5
no fix listed
1
linuxserver/deluge:18.04.10ac871624394
perl@5.26.1-6ubuntu0.5
no fix listed
1
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
perl@5.26.1-6ubuntu0.5
no fix listed
1
linuxserver/foldingathome:7.6.219a997426d71e
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
1
linuxserver/jellyfin:10.7.72427dde159a2
perl@5.30.0-9ubuntu0.2
no fix listed
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
perl@5.26.1-6ubuntu0.5
no fix listed
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
perl@5.26.1-6ubuntu0.3
no fix listed
1
linuxserver/plex:1.25.24a13ced2326c
perl@5.30.0-9ubuntu0.2
no fix listed
1
linuxserver/unifi-controller:8.0.240ae315a3a456
perl@5.30.0-9ubuntu0.4
no fix listed
1
linuxserver/unifi-controller:7.3.83ab105cc50322
perl@5.30.0-9ubuntu0.3
no fix listed
1
lis314/project-zomboid-docker:latestaa2089c37920
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
litmuschaos/mongo:4.2.899961210d467
perl@5.26.1-6ubuntu0.3
no fix listed
1
livekit/ingress:v1.2.21ab01641b366
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5
1
localstack/localstack:3.19d278167f2b7
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
locustio/locust:2.24.151d866285170
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
logiqai/flash:v3.10.265b996bc7bdc
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
longhornio/longhorn-manager:v1.2.3dca34321452c
perl@5.30.0-9ubuntu0.2
no fix listed
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
perl@5.26.1-6ubuntu0.5
no fix listed
1
longhornio/upgrade-responder:v0.2.05875cef29348
perl@5.30.0-9ubuntu0.4
no fix listed
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
perl@5.30.0-9ubuntu0.2
no fix listed
1
luligu/matterbridge:3.0.28f97884bebc2
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3
1
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-assure-identity:2.0.0147854a3c916
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-audit:2.0.079428add7f38
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-deployment:2.0.0ea8110886d38
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-management-api:2.0.0b9a23345eabd
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
perl@5.30.0-9ubuntu0.2
no fix listed
1
lumenvox/cloud-voice-verifier:2.0.014170ad34903
perl@5.30.0-9ubuntu0.2
no fix listed
1
makemake1337/blutgang:latest8a55174fc830
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
makersquad/harp-proxy:0.8.1a40dd258c527
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3
1
maksymhencha/educative-helm-bookapp:0.0.27f096a681192
perl@5.30.0-9ubuntu0.5
no fix listed
1
maptiler/server:4.8.07e206140057b
perl@5.30.0-9ubuntu0.5
no fix listed
1
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
matterlabs/external-node:v24.0.06cbfea4c694a
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
mbround18/valheim:3.1.070bd4da591cd
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
mediagis/nominatim:3.7c15e941485ef
perl@5.30.0-9ubuntu0.2
no fix listed
1
mediagis/nominatim:4.2d0eae7b51374
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.