StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,409
of 17,790 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,409 of 17,790 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,352
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more39
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,409 by stars
ChartLatestAffected imagesRadar Score
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

27,684
cloakbrowser-mcpobeoneVerified publisher0.3.11 of 1See more

cloakbrowser-mcp obeone 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,297
firecrawlobeoneVerified publisher3.0.43 of 5See more

firecrawl obeone 3.0.4

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

10,060
libretranslateobeoneVerified publisher1.0.71 of 1See more

libretranslate obeone 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
libretranslate/libretranslate:v1.9.61de2d7056bb8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,008
ollamaobeoneVerified publisher0.3.11 of 2See more

ollama obeone 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,093
olvid-botobeoneVerified publisher0.3.31 of 1See more

olvid-bot obeone 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
olvid/bot-daemon:2.0.1e0e6b165d879
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,093
parcelapp-mcpobeoneVerified publisher0.1.01 of 1See more

parcelapp-mcp obeone 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

865
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,184
lensoci-ai-incubations0.1.141 of 16See more

lens oci-ai-incubations 0.1.14

1 of the 16 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

17,134
octantisoctantis0.1.01 of 1See more

octantis octantis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/vinny1892/octantis:latest45459c0910fc
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,583
mockoidcoidcmockVerified publisher0.0.11 of 1See more

mockoidc oidcmock 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
marcoimme/oidcmock:latestb6035c0721a8
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,321
web-chartoje-ktcloudlab0.1.01 of 1See more

web-chart oje-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
ojp-serverojp0.1.51 of 1See more

ojp-server ojp 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rrobetti/ojp:0.1.0-beta1141bd88232b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,631
automx2oleds-helm-chartsVerified publisher1.0.51 of 1See more

automx2 oleds-helm-charts 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
oled01/automx2:2025.1.105d3e398e675
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

5,360
cmsmsoleds-helm-chartsVerified publisher0.1.61 of 1See more

cmsms oleds-helm-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.7-debian-12-r290dc6acb7b2e
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,861
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8

Open the chart page →

8,133
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

9,062
laravel-appoli-the-devVerified publisher2.0.171 of 1See more

laravel-app oli-the-dev 2.0.17

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,728
node-appoli-the-devVerified publisher1.0.01 of 1See more

node-app oli-the-dev 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/node:22-bookworm-slim83f487e0a634
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,171
paperless-ngxoli-the-devVerified publisher1.1.11 of 1See more

paperless-ngx oli-the-dev 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,651
cron-jobonechart-slVerified publisher0.73.71 of 1See more

cron-job onechart-sl 0.73.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/debian:stable-slim04634311a8d5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

978
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

6,096
ontoserverontoserverVerified publisher0.5.21 of 2See more

ontoserver ontoserver 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,649
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
perl@5.36.0-7
no fix listed

Open the chart page →

9,747
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,699
jobopen-charts2.0.01 of 1See more

job open-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

738
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

3,908
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

3,722
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

63,280
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3
omecproject/onos-progran:1.0.05715e5648aa0
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

88,653
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
perl@5.26.1-6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

8,056
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

26,246
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

15,718
mcord-cdn-remoteopencord0.1.62 of 2See more

mcord-cdn-remote opencord 0.1.6

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3
woojoong/wowza:latestec230db19652
perl@5.26.1-6ubuntu0.2
5.26.1-6ubuntu0.7+esm3

Open the chart page →

42,655
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

29,156
mcord-control-planeopencord0.2.22 of 5See more

mcord-control-plane opencord 0.2.2

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mme:mwca-mme-debug8dd6dea45be4
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
perl@5.26.1-6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

15,666
oaisimopencord0.1.72 of 3See more

oaisim opencord 0.1.7

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/lte-softmodem:1.1.0b5ddd36ec20c
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/lte-uesoftmodem:1.1.0686f8bc37d8c
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

14,556
omec-control-planeopencord0.1.315 of 8See more

omec-control-plane opencord 0.1.31

5 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/c3po-hss:master-latest638671ef4842
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3
omecproject/c3po-hssdb:master-latest28a90cc26716
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
omecproject/mme-exporter:paging-latestbcc5f19fd676
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/ngic-cp:central-cp-multi-upfs-latest24a389a0a4fe
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/openmme:master-latest64776cb9edb3
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

40,825
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

12,942
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3

Open the chart page →

38,902
ovspluginopencord1.0.21 of 1See more

ovsplugin opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
gopinatht/ovs-plugin-installer:latest632cb2e9c399
perl@5.22.1-9ubuntu0.3
5.22.1-9ubuntu0.9+esm3

Open the chart page →

4,172
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

12,626
sebaopencord1.0.06 of 17See more

seba opencord 1.0.0

6 of the 17 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
voltha/voltha-cli:1.6.0c4e41e92f046
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
voltha/voltha-envoy:1.6.059ab2a00f712
perl@5.18.2-2ubuntu1.1
5.18.2-2ubuntu1.7+esm8
voltha/voltha-netconf:1.6.037f80524c207
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
voltha/voltha-ofagent:1.6.09ee8c1f4428c
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
voltha/voltha-voltha:1.6.0ff596b62de59
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3

Open the chart page →

93,946
voltha-infraopencord2.14.04 of 10See more

voltha-infra opencord 2.14.0

4 of the 10 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
library/ubuntu:16.041f1a2d56de1d
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3
voltha/voltha-onos:5.1.8e038acb950d3
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

41,101
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

11,051
dokuopenlit0.1.41 of 3See more

doku openlit 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latestfa394da808cc
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

1,737
openlitopenlit1.24.01 of 3See more

openlit openlit 1.24.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.4.12e6587b81a26
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

5,068
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,377
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

3,465
llm-stackopenproject-helm-chartsVerified publisher1.1.02 of 2See more

llm-stack openproject-helm-charts 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
library/python:3.12-slim78387bc3881b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,992

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
cccs/assemblyline-socketio:4.7.4.stable19caf40394bd17
perl@5.36.0-7+deb12u3
no fix listed
1
cccs/assemblyline-ui:4.7.4.stable190426ed7884a2
perl@5.36.0-7+deb12u3
no fix listed
1
chaerr/kridge:demo-operator-v0.1.266833deec017
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
chainsafe/lodestar:latest5593f6e97912
perl@5.36.0-7+deb12u3
no fix listed
1
chainsafe/lodestar:v1.27.07b9fe4aa8073
perl@5.36.0-7+deb12u1
no fix listed
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
perl@5.18.2-2ubuntu1.7
5.18.2-2ubuntu1.7+esm8
1
chetangautamm/repo:sipp.v3e7f7049e1544
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
cheveo/azp-agent:1.0.282240f890884
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
cheyang/distributed-tf:1.6.046cc34755493
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
1
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
perl@5.40.1-6
5.40.1-6+deb13u1
1
chocobozzz/peertube:v8.1.5052712130691
perl@5.40.1-6
5.40.1-6+deb13u1
1
chriseaton/adventureworks:latest54c3384ce701
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
chromadb/chroma:1.5.7fc8dc8e11fb2
perl@5.40.1-6
5.40.1-6+deb13u1
1
circleci/runner:launch-agent9bdc62f02162
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ciscolabs/msm-nc:0710202336d02faad958
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
citizenstig/httpbin:latestb81c818ccb86
perl@5.22.1-9
5.22.1-9ubuntu0.9+esm3
1
ckan/ckan-base:2.12.087ecf3f27ad6
perl@5.36.0-7+deb12u3
no fix listed
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
ckulka/baikal:0.10.1-nginx434bdd162247
perl@5.36.0-7+deb12u2
no fix listed
1
clickhouse/clickhouse-server:24.81ffa82edee00
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
clickhouse/clickhouse-server:23.8512bb8a21483
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
clickhouse/clickhouse-server:26.3810861a2e2d0
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:25.3.2.398745843b17f9
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:26.3.1092098d3b31dd
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:24.12.6a65ca89ddbe8
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:25.3.14.14b627d7a9bc0e
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
clickhouse/clickhouse-server:26.8.2:latestfa394da808cc
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8
1
cloudtooling/moodle:5.2.3f4f04e0fc401
perl@5.36.0-7+deb12u3
no fix listed
1
cloudve/janis-terminal:latestaf56e77ca587
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
cloudve/ttyd:latestd79c1c5881c0
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
perl@5.36.0-7+deb12u3
no fix listed
1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
perl@5.36.0-7+deb12u3
no fix listed
1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
perl@5.36.0-7+deb12u3
no fix listed
1
cm2network/squad:latest8cba47f53df5
perl@5.40.1-6
5.40.1-6+deb13u1
1
codedesignplus/ms-emails-grpc:lateste336012bc781
perl@5.36.0-7+deb12u3
no fix listed
1
codedesignplus/ms-emails-rest:latestac84661c605e
perl@5.36.0-7+deb12u3
no fix listed
1
codedesignplus/ms-licenses-grpc:latest360144457f4d
perl@5.36.0-7+deb12u3
no fix listed
1
codedesignplus/ms-modules-grpc:latest3f6aaa32d526
perl@5.36.0-7+deb12u3
no fix listed
1
coderenvs/timescale:1.44.676fd37fe6830
perl@0:1.28-422.el8
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-2.el8_9.1
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.28-423.el8_10.1
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb
1
conductoross/conductor:3.31.09fba127693e6
perl@5.40.1-6
5.40.1-6+deb13u1
1
consensys/teku:latest3a4f5761ae1c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
consensys/teku:25.4.1bf6ecd2ea716
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4
1
consensys/web3signer:latestf146a51a1ba3
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
contentsquareplatform/chproxy:v1.26.524555f22d4be
perl@5.36.0-7+deb12u1
no fix listed
1
continuoussecuritytooling/keycloak-reporting-cli:1.3.3f04ecefab64e
perl@5.36.0-7+deb12u3
no fix listed
1
cortezaproject/corteza:2024.9.60bcdcbcd3c63
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.