StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,409
of 17,790 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,409 of 17,790 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,352
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more39
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,409 by stars
ChartLatestAffected imagesRadar Score
googly-logingoogly-login0.1.01 of 2See more

googly-login googly-login 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,649
Governify-Bluejaygovernify0.1.02 of 12See more

Governify-Bluejay governify 0.1.0

2 of the 12 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

22,587
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

24,379
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
library/cassandra:3.11.65aa8400b4b3b
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

19,311
kubernetes-dashboardgpg-dev7.5.01 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8

Open the chart page →

6,078
openclawgpg-dev1.5.361 of 2See more

openclaw gpg-dev 1.5.36

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,656
opentelemetry-demogpg-dev0.33.89 of 27See more

opentelemetry-demo gpg-dev 0.33.8

9 of the 27 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

49,362
video-analytics-demogpu-operator0.1.92 of 3See more

video-analytics-demo gpu-operator 0.1.9

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

15,797
video-analytics-demo-l4tgpu-operator0.1.31 of 3See more

video-analytics-demo-l4t gpu-operator 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
grafana-samplinggrafana1.1.71 of 2See more

grafana-sampling grafana 1.1.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

3,370
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

7,956
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

4,632
grayloggraylogVerified publisher1.0.22 of 4See more

graylog graylog 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
library/mongo:85211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

5,347
gridgain9gridgainVerified publisher1.1.101 of 2See more

gridgain9 gridgain 1.1.10

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/debian:12.12-slimd5d3f9c23164
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,221
routergroundcover1.12.3622 of 7See more

router groundcover 1.12.362

2 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
perl@5.40.1-6+e4
5.40.1-6+e15

Open the chart page →

6,070
librechat-exporterhajowielandVerified publisher1.0.01 of 1See more

librechat-exporter hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,301
rag-apihajowielandVerified publisher1.0.01 of 1See more

rag-api hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,705
web-checkhajowielandVerified publisher1.0.11 of 1See more

web-check hajowieland 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,327
hatchet-apihatchetOfficialVerified publisher0.19.01 of 4See more

hatchet-api hatchet 0.19.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,689
hatchet-hahatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-ha hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
perl@5.36.0-7+deb12u2
no fix listed
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,407
hatchet-stackhatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-stack hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
perl@5.36.0-7+deb12u2
no fix listed
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,407
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

9,178
web-charthcpark-ktcloudlab0.1.01 of 1See more

web-chart hcpark-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
hdx-oss-v2hdx-oss-v20.8.41 of 5See more

hdx-oss-v2 hdx-oss-v2 0.8.4

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:5.0.14-focal50cae5081ab4
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

6,751
heliconehelicone0.1.423 of 14See more

helicone helicone 0.1.42

3 of the 14 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
perl@5.36.0-7
no fix listed

Open the chart page →

25,183
helixhelix1.4.31 of 2See more

helix helix 1.4.3

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,586
test-apphellnet0.1.11 of 1See more

test-app hellnet 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
hello-worldhello-world-pponyVerified publisher0.3.01 of 1See more

hello-world hello-world-ppony 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.25.49ff236ed47fe
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,862
7dtdhelm-7dtd0.1.01 of 1See more

7dtd helm-7dtd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
vinanrra/7dtd-server:v0.4.4f9534490bd2b
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

10,673
my_web1helm-chart-by-piyush0.1.01 of 1See more

my_web1 helm-chart-by-piyush 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,703
pageshelm-chart-repos-camden1.0.02 of 3See more

pages helm-chart-repos-camden 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,242
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,036
home-assistant-matter-hubhelm-chart-roeiVerified publisher3.0.21 of 1See more

home-assistant-matter-hub helm-chart-roei 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
luligu/matterbridge:3.0.28f97884bebc2
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,829
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
iofog/router:2.0.17260cf861479
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

24,171
nginx-charthelm-chart-sample-app0.1.01 of 1See more

nginx-chart helm-chart-sample-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rraahul/test:latestbfe2c1183bc0
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

4,599
kube-downscalerhelm-charts-nr0.7.61 of 1See more

kube-downscaler helm-charts-nr 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
perl@5.36.0-7
no fix listed

Open the chart page →

4,310
locusthelm-charts-nr0.32.41 of 1See more

locust helm-charts-nr 0.32.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,817
node-problem-detectorhelm-charts-nr2.3.171 of 1See more

node-problem-detector helm-charts-nr 2.3.17

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,462
supersethelm-charts-nr1.1.31 of 1See more

superset helm-charts-nr 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,328
hello-world-charthelm-chart-test-hello-world0.1.01 of 1See more

hello-world-chart helm-chart-test-hello-world 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
mywebhelmchartwebapp0.0.51 of 1See more

myweb helmchartwebapp 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,703
my-apphelm-demo85640.2.71 of 2See more

my-app helm-demo8564 0.2.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dannielkil/book-frontend:latest937993927694
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,148
affinehelmforgeVerified publisher1.0.03 of 3See more

affine helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
pgvector/pgvector:0.8.6-pg16-bookwormccc6e83d6e35
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,081
alfiohelmforgeVerified publisher1.2.121 of 3See more

alfio helmforge 1.2.12

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,114
apachehelmforgeVerified publisher1.0.61 of 1See more

apache helmforge 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:2.4.68979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,703
appwritehelmforgeVerified publisher2.0.02 of 5See more

appwrite helmforge 2.0.0

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
appwrite/new:1.1.96-self-hostedaf65a77db50e
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,689
archiveboxhelmforgeVerified publisher1.1.121 of 1See more

archivebox helmforge 1.1.12

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
archivebox/archivebox:0.7.41a5a37331091
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,675
automatischhelmforgeVerified publisher1.3.72 of 4See more

automatisch helmforge 1.3.7

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,816
booklorehelmforgeVerified publisher2.0.11 of 3See more

booklore helmforge 2.0.1

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

2,329

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
cortezaproject/corteza:2024.9.08eb7a26605c9
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
cortezaproject/corteza:2024.9.4cb9f200de5d2
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
perl@5.36.0-7+deb12u2
no fix listed
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
perl@5.40.1-6
5.40.1-6+deb13u1
1
countly/countly-server:25.05.4e3c238248f99
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
perl@5.26.1-6ubuntu0.2
5.26.1-6ubuntu0.7+esm3
1
cribl/cribl:3.0.2762747cb6796
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3
1
cspconsole/config-provider:1.0.365524a26a6c23
perl@5.36.0-7+deb12u3
no fix listed
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
perl@5.36.0-7+deb12u3
no fix listed
1
cspconsole/report-collector:1.0.15839750248193b
perl@5.36.0-7+deb12u3
no fix listed
1
cspconsole/report-processor:1.0.279a2d8840bfdf
perl@5.36.0-7+deb12u3
no fix listed
1
cubejs/cubestore:v1.5.334ac523a9bab
perl@5.36.0-7+deb12u3
no fix listed
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
perl@5.40.1-6
5.40.1-6+deb13u1
1
cyfershepard/jellystat:1.1.11c4e2dfa8bddf
perl@5.36.0-7+deb12u3
no fix listed
1
cznic/knot-resolver:v6.4.2fe71c5214fdc
perl@5.40.1-6
5.40.1-6+deb13u1
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
perl@5.36.0-7
no fix listed
1
daedalusproject/base_kubectl:latest6f72b5119eda
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
dagster/dagster-celery-k8s:1.13.22e29a64392e12
perl@5.40.1-6
5.40.1-6+deb13u1
1
dagster/dagster-cloud-agent:1.13.229674f3b94a3b
perl@5.40.1-6
5.40.1-6+deb13u1
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
perl@5.36.0-7+deb12u3
no fix listed
1
dannielkil/book-frontend:latest937993927694
perl@5.36.0-7+deb12u1
no fix listed
1
darthsim/imgproxy:v3.30.13b709e4a0e5e
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
darthsim/imgproxy:v3.26476cb08c816a
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
darthsim/imgproxy:v3.29.17d12c7c8fc66
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
daskdev/dask-notebook:1.1.0052630f5ca04
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
1
datadog/agent:6aad9994de6a7
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
datafuselabs/databend-meta:v1.2.279ba877ee6cb4d
perl@5.36.0-7+deb12u1
no fix listed
1
datafuselabs/databend-query:v1.2.279a936843b85b4
perl@5.36.0-7+deb12u1
no fix listed
1
datalayers/datalayers:v2.2.1017b292079239
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
datalust/seq:5.0.832-pre9c731bb207a6
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
1
datalust/seq-input-gelf:3.0.441-x643de34aed5642
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
datamate/seafile-professional:11.0.202dd66b722464
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
dbeaver/cloudbeaver:26.1.287ab86d00f8c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
dbgate/dbgate:7.2.3f2dc7423ea88
perl@5.36.0-7+deb12u3
no fix listed
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
ddosify/alaz:v0.12.0ea602056d9ce
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_backend:3.2.93c11e3182652
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
perl@5.36.0-7+deb12u1
no fix listed
1
decisionrules/ai-engine:latest38c377e7c01e
perl@5.40.1-6
5.40.1-6+deb13u1
1
deconzcommunity/deconz:2.29.2062de2362641
perl@5.36.0-7+deb12u1
no fix listed
1
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
1
defactops/defactops-backend:1.0.2307b663c0092a
perl@5.36.0-7+deb12u1
no fix listed
1
defectdojo/defectdojo-django:3.3.100c597abdbb535
perl@5.40.1-6
5.40.1-6+deb13u1
1
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
perl@5.40.1-6
5.40.1-6+deb13u1
1
dellcloud/category:distributed02fc234353a9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.