StackRadar

CVE-2025-40909

Medium

Advisory

Published 30 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,267
of 17,787 indexed, latest versions
Container images
1,323
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 1,267 of 17,787 indexed charts deploy, on 1,323 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+29 more5.34.0-3ubuntu1.5, 5.36.0-7+deb12u3, 5.38.2-3.2ubuntu0.21,297
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+8 more0:1.28-423.el8_10, 0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f756, 0:5.74-481.1.el9_6+3 more26
perl-Carprpm1.42-396.el80:1.50-439.module+el8.6.0+13324+628a2397, 0:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.6.0+13324+628a2397, 0:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.6.0+13324+628a2397, 0:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.6.0+13324+628a2397, 0:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.6.0+13324+628a2397, 1:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.6.0+13324+628a2397, 0:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.6.0+13324+628a2397, 4:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.6.0+13324+628a2397, 4:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.6.0+13324+628a2397, 0:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.6.0+13324+628a2397, 1:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.6.0+13324+628a2397, 0:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.6.0+13324+628a2397, 0:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.6.0+13324+628a2397, 4:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.6.0+13324+628a2397, 1:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.6.0+13324+628a2397, 1:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.6.0+13324+628a2397, 0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.6.0+13324+628a2397, 0:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.6.0+13324+628a2397, 1:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.6.0+13324+628a2397, 1:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.6.0+13324+628a2397, 0:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.6.0+13324+628a2397, 1:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.6.0+13324+628a2397, 4:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.6.0+13324+628a2397, 1:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.6.0+13324+628a2397, 0:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.6.0+13324+628a2397, 0:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.6.0+13324+628a2397, 0:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.6.0+13324+628a2397, 2:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.6.0+13324+628a2397, 0:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.6.0+13324+628a2397, 0:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.6.0+13324+628a2397, 0:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.6.0+13324+628a2397, 0:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.6.0+13324+628a2397, 0:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.6.0+13324+628a2397, 0:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
OSV records
DEBIAN-CVE-2025-40909RHSA-2025:11545RHSA-2025:11804RHSA-2025:11805RHSA-2026:37070RHSA-2026:8096RLSA-2025:11804UBUNTU-CVE-2025-40909openSUSE-SU-2025:15258-1
Also known as
USN-7678-1

Charts affected

1,267 by stars
ChartLatestAffected imagesRadar Score
rediseosc-lot-1Verified publisher0.2.01 of 1See more

redis eosc-lot-1 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
redis/redis-stack-server:6.2.6-v251a58f32d412
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

3,100
untareosc-lot-1Verified publisher0.1.01 of 1See more

untar eosc-lot-1 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/debian:12.5-slim67f3931ad8cb
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

1,554
upgrade-responderepinioVerified publisher0.2.01 of 5See more

upgrade-responder epinio 0.2.0

1 of the 5 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
longhornio/upgrade-responder:v0.2.05875cef29348
perl@5.30.0-9ubuntu0.4
no fix listed

Open the chart page →

7,366
blutgangethereum-helm-chartsVerified publisher0.0.121 of 1See more

blutgang ethereum-helm-charts 0.0.12

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
makemake1337/blutgang:latest8a55174fc830
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

2,524
powfaucetethereum-helm-chartsVerified publisher1.2.11 of 1See more

powfaucet ethereum-helm-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
pk910/powfaucet:v2-stable3dcae6a62896
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

4,117
beeethersphereVerified publisher0.17.41 of 1See more

bee ethersphere 0.17.4

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ethersphere/bee:2.2.0a884fd84b72f
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

3,469
nethermindethersphereVerified publisher0.2.11 of 1See more

nethermind ethersphere 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
nethermind/nethermind:1.14.615517708c3b6
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.5

Open the chart page →

4,964
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

20,987
evobotevobotVerified publisher0.1.11 of 1See more

evobot evobot 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

2,998
spring-boot-adminevryfs-ossVerified publisher0.1.101 of 1See more

spring-boot-admin evryfs-oss 0.1.10

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.5

Open the chart page →

6,038
express-ts-app-helm-chartsexpress-ts-app-helm-chartsVerified publisher1.0.01 of 4See more

express-ts-app-helm-charts express-ts-app-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
grafana/promtail:3.5.165bfae480b57
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.2

Open the chart page →

5,787
oom-event-generatorfairwinds-incubator0.2.21 of 1See more

oom-event-generator fairwinds-incubator 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
perl@5.22.1-9ubuntu0.9
no fix listed

Open the chart page →

4,645
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.5

Open the chart page →

13,491
rospoferama0.4.31 of 1See more

rospo ferama 0.4.3

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

5,300
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

7,519
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

14,688
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

10,119
fibfibonacci-cluster-appsVerified publisher1.0.03 of 5See more

fib fibonacci-cluster-apps 1.0.0

3 of the 5 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
perl@5.36.0-7
5.36.0-7+deb12u3
golenski/fibonacci-task-manager:2.0.03a2b36df247b
perl@5.36.0-7
5.36.0-7+deb12u3
golenski/fibonacci-worker:2.0.0954caf4aaf6a
perl@5.36.0-7
5.36.0-7+deb12u3

Open the chart page →

16,963
infrafibonacci-cluster-infraVerified publisher1.0.03 of 4See more

infra fibonacci-cluster-infra 1.0.0

3 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.37.0bae523439ee3
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
library/postgres:16.4e62fbf9d3e2b
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
library/redis:7.4.1bb142a9c18ac
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

12,510
flask-contactsfirst-idror-chart1.0.11 of 3See more

flask-contacts first-idror-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

5,624
business-api-ecosystemfiware1.1.02 of 4See more

business-api-ecosystem fiware 1.1.0

2 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
perl@5.30.0-9ubuntu0.5
no fix listed
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3

Open the chart page →

64,192
apm-hubflanksourceVerified publisher0.0.471 of 2See more

apm-hub flanksource 0.0.47

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
flanksource/apm-hub:v0.0.471dacc3195bf9
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5

Open the chart page →

6,129
canary-checkerflanksourceVerified publisher1.2.01 of 2See more

canary-checker flanksource 1.2.0

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
flanksource/canary-checker-ui:v1.4.281764c84e550db
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

4,661
flanksource-uiflanksourceVerified publisher1.4.3181 of 1See more

flanksource-ui flanksource 1.4.318

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
flanksource/incident-manager-ui:v1.4.318891f21df54fb
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

2,480
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

8,831
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

5,624
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

4,079
flinkflink0.5.11 of 1See more

flink flink 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/flink:1.14.6-scala_2.122461f02672b3
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.5

Open the chart page →

5,690
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

8,046
dump1090fnzv0.2.81 of 1See more

dump1090 fnzv 0.2.8

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
fnzv/dump1090:latestb3079b95c336
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5

Open the chart page →

4,123
ledgerformance1.2.01 of 1See more

ledger formance 1.2.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.5

Open the chart page →

4,641
plexfydrah-charts2.2.01 of 1See more

plex fydrah-charts 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
perl@5.22.1-9ubuntu0.5
no fix listed

Open the chart page →

8,971
passboltg0dscookie0.5.21 of 2See more

passbolt g0dscookie 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
library/mariadb:10.79a48ac9f196f
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

7,983
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
perl@5.36.0-7
5.36.0-7+deb12u3

Open the chart page →

13,247
wekan-oldgabisonfire0.1.21 of 1See more

wekan-old gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
wekanteam/wekan:v4.2268a51f0327df
perl@5.30.0-9build1
no fix listed

Open the chart page →

5,980
accumulogaffer2.2.12 of 4See more

accumulo gaffer 2.2.1

2 of the 4 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
gchq/accumulo:2.0.1c460bb587d6d
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
gchq/hdfs:3.3.35ec58edbb2db
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2

Open the chart page →

16,969
gaffer-road-trafficgaffer2.2.11 of 8See more

gaffer-road-traffic gaffer 2.2.1

1 of the 8 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2

Open the chart page →

9,381
garge-appgargeVerified publisher0.1.471 of 1See more

garge-app garge 0.1.47

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
sondresjo/garge-app:v1.20.70382ebf9dfc8
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3

Open the chart page →

1,755
pagesgary-pages1.0.02 of 3See more

pages gary-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,233
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

18,217
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

14,698
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

19,234
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

16,178
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

13,572
dizquetvgeek-cookbookVerified publisher4.4.21 of 1See more

dizquetv geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
vexorian/dizquetv:1.4.37e2b99844a5c
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

4,885
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

12,270
embygeek-cookbookVerified publisher3.4.21 of 1See more

emby geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

8,584
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

8,982
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

11,042
jackettgeek-cookbookVerified publisher11.7.21 of 1See more

jackett geek-cookbook 11.7.2

1 of the 1 container images this version deploys carry CVE-2025-40909.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

9,736

Container images carrying it

1,323 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
platform9community/customers-service:latest2089811e5cc6
perl@5.26.1-6ubuntu0.5
no fix listed
1
platform9community/vets-service:latestd1165c94dfb3
perl@5.26.1-6ubuntu0.5
no fix listed
1
platform9community/visits-service:latest8d11b50368c6
perl@5.26.1-6ubuntu0.5
no fix listed
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
perl@5.30.0-9ubuntu0.2
no fix listed
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
perl@5.22.1-9ubuntu0.5
no fix listed
1
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
perl@0:1.28-423.el8_10
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-3.el8
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.30-474.module+el8.10.0+24099+8aa2f756
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb
1
pococze/python-hello-elos:2.0.07a1aab425e51
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
pozetroninc/keydb:v6.0.1653ae64f29da8
perl@5.26.1-6ubuntu0.3
no fix listed
1
pposkrobko/risk-advisor:v1.0.0eaf260341dba
perl@5.22.1-9
no fix listed
1
praravind1801/helmimages:3.0.0f29d637b9ce1
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
project2team4/react:latest3ff031a08887
perl@5.30.0-9ubuntu0.2
no fix listed
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
proxysql/proxysql:2.7.3a4d6c35c2949
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
pschichtel/mindustry-server:v145.1b543e9c2d371
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
psorab/elibrary:latest53b68896c4ce
perl@5.30.0-9ubuntu0.3
no fix listed
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
perl@5.30.0-9ubuntu0.2
no fix listed
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
perl@5.26.1-6ubuntu0.5
no fix listed
1
qdrant/qdrant:v1.7.45f2a56b95266
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
qdrant/qdrant:v1.4.166ee661d5241
perl@5.36.0-7
5.36.0-7+deb12u3
1
quickwit/quickwit:v0.8.1d29332bdadcc
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
qumine/minecraft-server:v0.1.15c0b650d51132
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.5
1
qxip/qryn:3.2.3977acc9c7a9fd
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
rabeh/apibootspring:1.0941007b6946e
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.2
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.2
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
perl@5.26.1-6ubuntu0.5
no fix listed
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
perl@5.22.1-9ubuntu0.5
no fix listed
1
razorbladex401/dayz:latest6a4d79248e7d
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
redash/redash:25.8.000d813437db5
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3
1
redis/redis-stack-server:6.2.6-v251a58f32d412
perl@5.30.0-9ubuntu0.3
no fix listed
1
redis/redis-stack-server:7.4.0-v0887cf87cc744
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
resouer/redis-slave:v2e2f198b49ba7
perl@5.18.2-2ubuntu1
no fix listed
1
resurfaceio/resurface:3.7.84d5cda2f64109
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
rezachalak/bzen-mongo:1.0.034f694325191
perl@5.30.0-9ubuntu0.4
no fix listed
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
perl@5.30.0-9ubuntu0.2
no fix listed
1
rnwood/smtp4dev:3.6.1912304153668
perl@5.36.0-7+deb12u1
5.36.0-7+deb12u3
1
robotshop/rs-mongodb:latest119b545823cd
perl@5.30.0-9ubuntu0.2
no fix listed
1
rocketchat/freeswitch:stablecfba5c20a5cc
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3
1
rraahul/test:latestbfe2c1183bc0
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5
1
rrobetti/ojp:0.1.0-beta1141bd88232b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.2
1
rundeck/rundeck:3.2.74d64fe56f767
perl@5.22.1-9ubuntu0.6
no fix listed
1
rundeck/rundeck:3.0.16b13e8059ad72
perl@5.22.1-9ubuntu0.6
no fix listed
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.5
1
ryuunosukeds3/orbital:latest0879f7261b10
perl@5.36.0-7+deb12u2
5.36.0-7+deb12u3
1
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3ce9ce8293e4e
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5
1
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9bb64bf14467d
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5
1
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525799c35f9f306
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.5
1
santisbon/evwatcher:latestc4e994ca4540
perl@5.36.0-7
5.36.0-7+deb12u3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.