StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,409
of 17,790 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,409 of 17,790 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,352
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more39
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,409 by stars
ChartLatestAffected imagesRadar Score
castopodhelmforgeVerified publisher1.2.72 of 3See more

castopod helmforge 1.2.7

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
castopod/castopod:1.15.54e4f0440520f
perl@5.40.1-6
5.40.1-6+deb13u1
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

9,485
changedetectionhelmforgeVerified publisher1.1.161 of 1See more

changedetection helmforge 1.1.16

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.5f69554198005
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,612
chiefonboardinghelmforgeVerified publisher1.1.152 of 3See more

chiefonboarding helmforge 1.1.15

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,086
ckanhelmforgeVerified publisher1.3.84 of 6See more

ckan helmforge 1.3.8

4 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ckan/ckan-base:2.12.087ecf3f27ad6
perl@5.36.0-7+deb12u3
no fix listed
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

10,027
countlyhelmforgeVerified publisher1.2.62 of 3See more

countly helmforge 1.2.6

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
library/mongo:8.3.85211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

18,938
dawarichhelmforgeVerified publisher1.0.12 of 4See more

dawarich helmforge 1.0.1

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
postgis/postgis:18-3.67e00e8c3539f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

10,442
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cybrarist/discount-bandit:v4.0.4e9e2447ac666
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

29,930
druidhelmforgeVerified publisher1.3.62 of 4See more

druid helmforge 1.3.6

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/zookeeper:3.9.5f258365d4882
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

8,623
drupalhelmforgeVerified publisher1.2.131 of 2See more

drupal helmforge 1.2.13

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/drupal:11.4.6-php8.5-apache-bookworm28f7931ecbcb
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,884
entehelmforgeVerified publisher1.0.22 of 4See more

ente helmforge 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,254
fastmcp-serverhelmforgeVerified publisher1.7.41 of 1See more

fastmcp-server helmforge 1.7.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.11.2fcb7017327d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,304
generichelmforgeVerified publisher3.1.51 of 1See more

generic helmforge 3.1.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.31.505b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
ghosthelmforgeVerified publisher1.2.71 of 3See more

ghost helmforge 1.2.7

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ghost:6.63.0e05bc1169fb2
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,485
hoppscotchhelmforgeVerified publisher1.1.111 of 2See more

hoppscotch helmforge 1.1.11

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,076
immichhelmforgeVerified publisher1.2.84 of 5See more

immich helmforge 1.2.8

4 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

11,122
jenkinshelmforgeVerified publisher1.0.91 of 1See more

jenkins helmforge 1.0.9

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-lts-jdk21c1e4c349365f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,498
jupyterhubhelmforgeVerified publisher1.0.61 of 3See more

jupyterhub helmforge 1.0.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,361
komgahelmforgeVerified publisher1.4.151 of 1See more

komga helmforge 1.4.15

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

2,288
langflowhelmforgeVerified publisher2.0.11 of 1See more

langflow helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
langflowai/langflow:1.12.13e3cac657435
perl@0:5.74-512.2.el10_0
0:5.74-515.el10_2

Open the chart page →

145
listmonkhelmforgeVerified publisher1.1.141 of 3See more

listmonk helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,863
matterbridgehelmforgeVerified publisher1.0.31 of 1See more

matterbridge helmforge 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
luligu/matterbridge:3.10.9c01108d904ec
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

917
mcp-serverhelmforgeVerified publisher1.0.01 of 1See more

mcp-server helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.2.061f759a1421f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,453
medikeephelmforgeVerified publisher2.0.12 of 3See more

medikeep helmforge 2.0.1

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,430
memcachedhelmforgeVerified publisher1.0.81 of 1See more

memcached helmforge 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,074
metabasehelmforgeVerified publisher1.2.291 of 3See more

metabase helmforge 1.2.29

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,676
middlewarehelmforgeVerified publisher1.2.63 of 4See more

middleware helmforge 1.2.6

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
middlewareeng/middleware:0.3.1747d880812f1
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

9,771
moodlehelmforgeVerified publisher1.1.02 of 2See more

moodle helmforge 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,206
netboxhelmforgeVerified publisher2.0.13 of 4See more

netbox helmforge 2.0.1

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

4,347
nextcloudhelmforgeVerified publisher1.0.03 of 3See more

nextcloud helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nextcloud:34.0.4-apachede4ad9389386
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,211
notediscoveryhelmforgeVerified publisher2.0.11 of 1See more

notediscovery helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,263
opencuthelmforgeVerified publisher1.1.92 of 5See more

opencut helmforge 1.1.9

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,772
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,560
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,819
pimcorehelmforgeVerified publisher2.0.11 of 6See more

pimcore helmforge 2.0.1

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

3,212
qdranthelmforgeVerified publisher1.0.51 of 1See more

qdrant helmforge 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

829
reactive-resumehelmforgeVerified publisher1.0.02 of 4See more

reactive-resume helmforge 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/amruthpillai/reactive-resume:v5.3.0c487ec5edcfe
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,071
ryothelmforgeVerified publisher1.0.02 of 2See more

ryot helmforge 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

6,068
strapihelmforgeVerified publisher2.3.141 of 3See more

strapi helmforge 2.3.14

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,084
supersethelmforgeVerified publisher1.3.63 of 5See more

superset helmforge 1.3.6

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/superset:6.1.016b50bbef664
perl@5.36.0-7+deb12u3
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,784
text-embeddings-inferencehelmforgeVerified publisher1.0.01 of 2See more

text-embeddings-inference helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,563
tomcathelmforgeVerified publisher1.0.61 of 2See more

tomcat helmforge 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/tomcat:11.0.25-jdk17-temurin-noble9e1d2afa6898
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,253
twentyhelmforgeVerified publisher1.0.12 of 5See more

twenty helmforge 1.0.1

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,649
uptime-kumahelmforgeVerified publisher1.5.131 of 1See more

uptime-kuma helmforge 1.5.13

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

30,326
wallabaghelmforgeVerified publisher1.3.61 of 3See more

wallabag helmforge 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,784
zookeeperhelmforgeVerified publisher1.0.21 of 1See more

zookeeper helmforge 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

3,145
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

12,680
jellyfinhelm-l3st86Verified publisher0.1.81 of 1See more

jellyfin helm-l3st86 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jellyfin/jellyfin:latestaefb67e6a7ff
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,626
openaevhelm-openbasVerified publisher2.0.53 of 7See more

openaev helm-openbas 2.0.5

3 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
openaev/platform:3.260904.00a12ce8b3db9
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

7,528
openbashelm-openbasVerified publisher1.8.144 of 7See more

openbas helm-openbas 1.8.14

4 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
openbas/caldera-server:5.1.0a277796d9724
perl@5.36.0-7+deb12u1
no fix listed
openbas/platform:2.0.5d986d80b0a75
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

25,190
pageshelm-repo1.0.02 of 3See more

pages helm-repo 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,242

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/postgresql:16.3.0-debian-12-r15fdc6979dbc53
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/redis:7.2.4-debian-12-r1670cafc5a71e8
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/redis:8.0.2-debian-12-r4cdc2efa9c306
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/redis-cluster:7.4.3-debian-12-r0a53d023fdfaf
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/valkey:latest0384ca2eec63
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/valkey:8.1.3-debian-12-r1a185655855b3
perl@5.36.0-7+deb12u2
no fix listed
1
bitnami/mariadb:11.7.216a7dae804fb
perl@5.36.0-7+deb12u1
no fix listed
1
bitnami/memcached:1.6.38dd8f2cba9a5b
perl@5.36.0-7+deb12u2
no fix listed
1
bitnami/minideb:latest835e5f8392c3
perl@5.40.1-6
5.40.1-6+deb13u1
1
bitnami/mongodb:8.0.8b3bd5b6be9a0
perl@5.36.0-7+deb12u2
no fix listed
1
bitnami/redis:7.4.24e65bf641805
perl@5.36.0-7+deb12u2
no fix listed
1
blackducksoftware/bdba-fluentd:2026.6.3c14bbbf45536
perl@5.40.1-6
5.40.1-6+deb13u1
1
blackducksoftware/bdba-frontend:2026.6.3b10eaea94fd3
perl@5.40.1-6
5.40.1-6+deb13u1
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
blockstream/bitcoind:27.29472492530e3
perl@5.36.0-7+deb12u1
no fix listed
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
perl@5.36.0-7+deb12u1
no fix listed
1
bmeares/meerschaum:2.8.48e9c5bacaa82
perl@5.36.0-7+deb12u1
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
perl@5.36.0-7+deb12u1
no fix listed
1
boky/postfix:5.1.0aafc77238423
perl@5.40.1-6
5.40.1-6+deb13u1
1
boky/postfix:4.4.0f3f247fd4252
perl@5.36.0-7+deb12u1
no fix listed
1
boxcutter/meshcmd:1.1.384e13f01bcab
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
perl@5.36.0-7
no fix listed
1
budibase/database:2.1.0d90f656261c9
perl@5.36.0-7+deb12u3
no fix listed
1
budibase/proxy:3.41.38d780b6ee602
perl@5.40.1-6
5.40.1-6+deb13u1
1
bugsink/bugsink:2ecdd84587746
perl@5.40.1-6
5.40.1-6+deb13u1
1
calltelemetry/web:0.8.1-rc7205d13269e350
perl@5.36.0-7+deb12u1
no fix listed
1
camunda/zeebe:8.4.5ab5abc09e407
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
carbone/carbone-ee:full-5.11.0518172cbad49
perl@5.40.1-6
5.40.1-6+deb13u1
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
perl@5.36.0-7+deb12u1
no fix listed
1
castai/hibernate:v0.14da62858c8381
perl@5.40.1-6
5.40.1-6+deb13u1
1
castlemock/castlemock:latestb7f3f1527ba9
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4
1
castopod/castopod:1.12.101fd37280cbb2
perl@5.36.0-7+deb12u1
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
perl@5.40.1-6
5.40.1-6+deb13u1
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
cccs/assemblyline-core:4.7.4.stable19c914f21a41d7
perl@5.36.0-7+deb12u3
no fix listed
1
cccs/assemblyline-rust:4.7.4.stable19c2f9619d9bcd
perl@5.36.0-7+deb12u3
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.