StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,409
of 17,790 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,409 of 17,790 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,352
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more39
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,409 by stars
ChartLatestAffected imagesRadar Score
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

27,684
cloakbrowser-mcpobeoneVerified publisher0.3.11 of 1See more

cloakbrowser-mcp obeone 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,297
firecrawlobeoneVerified publisher3.0.43 of 5See more

firecrawl obeone 3.0.4

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

10,060
libretranslateobeoneVerified publisher1.0.71 of 1See more

libretranslate obeone 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
libretranslate/libretranslate:v1.9.61de2d7056bb8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,008
ollamaobeoneVerified publisher0.3.11 of 2See more

ollama obeone 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,093
olvid-botobeoneVerified publisher0.3.31 of 1See more

olvid-bot obeone 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
olvid/bot-daemon:2.0.1e0e6b165d879
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,093
parcelapp-mcpobeoneVerified publisher0.1.01 of 1See more

parcelapp-mcp obeone 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

865
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,184
lensoci-ai-incubations0.1.141 of 16See more

lens oci-ai-incubations 0.1.14

1 of the 16 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

17,134
octantisoctantis0.1.01 of 1See more

octantis octantis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/vinny1892/octantis:latest45459c0910fc
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,583
mockoidcoidcmockVerified publisher0.0.11 of 1See more

mockoidc oidcmock 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
marcoimme/oidcmock:latestb6035c0721a8
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,321
web-chartoje-ktcloudlab0.1.01 of 1See more

web-chart oje-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
ojp-serverojp0.1.51 of 1See more

ojp-server ojp 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rrobetti/ojp:0.1.0-beta1141bd88232b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,631
automx2oleds-helm-chartsVerified publisher1.0.51 of 1See more

automx2 oleds-helm-charts 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
oled01/automx2:2025.1.105d3e398e675
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

5,360
cmsmsoleds-helm-chartsVerified publisher0.1.61 of 1See more

cmsms oleds-helm-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.7-debian-12-r290dc6acb7b2e
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,861
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8

Open the chart page →

8,133
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

9,062
laravel-appoli-the-devVerified publisher2.0.171 of 1See more

laravel-app oli-the-dev 2.0.17

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,728
node-appoli-the-devVerified publisher1.0.01 of 1See more

node-app oli-the-dev 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/node:22-bookworm-slim83f487e0a634
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,171
paperless-ngxoli-the-devVerified publisher1.1.11 of 1See more

paperless-ngx oli-the-dev 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,651
cron-jobonechart-slVerified publisher0.73.71 of 1See more

cron-job onechart-sl 0.73.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/debian:stable-slim04634311a8d5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

978
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

6,096
ontoserverontoserverVerified publisher0.5.21 of 2See more

ontoserver ontoserver 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,649
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
perl@5.36.0-7
no fix listed

Open the chart page →

9,747
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,699
jobopen-charts2.0.01 of 1See more

job open-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

738
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

3,908
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

3,722
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

63,280
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3
omecproject/onos-progran:1.0.05715e5648aa0
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

88,653
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
perl@5.26.1-6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

8,056
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

26,246
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

15,718
mcord-cdn-remoteopencord0.1.62 of 2See more

mcord-cdn-remote opencord 0.1.6

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3
woojoong/wowza:latestec230db19652
perl@5.26.1-6ubuntu0.2
5.26.1-6ubuntu0.7+esm3

Open the chart page →

42,655
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

29,156
mcord-control-planeopencord0.2.22 of 5See more

mcord-control-plane opencord 0.2.2

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mme:mwca-mme-debug8dd6dea45be4
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
perl@5.26.1-6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

15,666
oaisimopencord0.1.72 of 3See more

oaisim opencord 0.1.7

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/lte-softmodem:1.1.0b5ddd36ec20c
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/lte-uesoftmodem:1.1.0686f8bc37d8c
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

14,556
omec-control-planeopencord0.1.315 of 8See more

omec-control-plane opencord 0.1.31

5 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
omecproject/c3po-hss:master-latest638671ef4842
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3
omecproject/c3po-hssdb:master-latest28a90cc26716
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
omecproject/mme-exporter:paging-latestbcc5f19fd676
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/ngic-cp:central-cp-multi-upfs-latest24a389a0a4fe
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
omecproject/openmme:master-latest64776cb9edb3
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

40,825
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

12,942
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3

Open the chart page →

38,902
ovspluginopencord1.0.21 of 1See more

ovsplugin opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
gopinatht/ovs-plugin-installer:latest632cb2e9c399
perl@5.22.1-9ubuntu0.3
5.22.1-9ubuntu0.9+esm3

Open the chart page →

4,172
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

12,626
sebaopencord1.0.06 of 17See more

seba opencord 1.0.0

6 of the 17 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
voltha/voltha-cli:1.6.0c4e41e92f046
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
voltha/voltha-envoy:1.6.059ab2a00f712
perl@5.18.2-2ubuntu1.1
5.18.2-2ubuntu1.7+esm8
voltha/voltha-netconf:1.6.037f80524c207
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
voltha/voltha-ofagent:1.6.09ee8c1f4428c
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
voltha/voltha-voltha:1.6.0ff596b62de59
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3

Open the chart page →

93,946
voltha-infraopencord2.14.04 of 10See more

voltha-infra opencord 2.14.0

4 of the 10 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
library/ubuntu:16.041f1a2d56de1d
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3
voltha/voltha-onos:5.1.8e038acb950d3
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

41,101
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

11,051
dokuopenlit0.1.41 of 3See more

doku openlit 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latestfa394da808cc
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

1,737
openlitopenlit1.24.01 of 3See more

openlit openlit 1.24.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.4.12e6587b81a26
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

5,068
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,377
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

3,465
llm-stackopenproject-helm-chartsVerified publisher1.1.02 of 2See more

llm-stack openproject-helm-charts 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
library/python:3.12-slim78387bc3881b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,992

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
cortezaproject/corteza:2024.9.08eb7a26605c9
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
cortezaproject/corteza:2024.9.4cb9f200de5d2
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
perl@5.36.0-7+deb12u2
no fix listed
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
perl@5.40.1-6
5.40.1-6+deb13u1
1
countly/countly-server:25.05.4e3c238248f99
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
perl@5.26.1-6ubuntu0.2
5.26.1-6ubuntu0.7+esm3
1
cribl/cribl:3.0.2762747cb6796
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3
1
cspconsole/config-provider:1.0.365524a26a6c23
perl@5.36.0-7+deb12u3
no fix listed
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
perl@5.36.0-7+deb12u3
no fix listed
1
cspconsole/report-collector:1.0.15839750248193b
perl@5.36.0-7+deb12u3
no fix listed
1
cspconsole/report-processor:1.0.279a2d8840bfdf
perl@5.36.0-7+deb12u3
no fix listed
1
cubejs/cubestore:v1.5.334ac523a9bab
perl@5.36.0-7+deb12u3
no fix listed
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
perl@5.40.1-6
5.40.1-6+deb13u1
1
cyfershepard/jellystat:1.1.11c4e2dfa8bddf
perl@5.36.0-7+deb12u3
no fix listed
1
cznic/knot-resolver:v6.4.2fe71c5214fdc
perl@5.40.1-6
5.40.1-6+deb13u1
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
perl@5.36.0-7
no fix listed
1
daedalusproject/base_kubectl:latest6f72b5119eda
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
dagster/dagster-celery-k8s:1.13.22e29a64392e12
perl@5.40.1-6
5.40.1-6+deb13u1
1
dagster/dagster-cloud-agent:1.13.229674f3b94a3b
perl@5.40.1-6
5.40.1-6+deb13u1
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
perl@5.36.0-7+deb12u3
no fix listed
1
dannielkil/book-frontend:latest937993927694
perl@5.36.0-7+deb12u1
no fix listed
1
darthsim/imgproxy:v3.30.13b709e4a0e5e
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
darthsim/imgproxy:v3.26476cb08c816a
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
darthsim/imgproxy:v3.29.17d12c7c8fc66
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
daskdev/dask-notebook:1.1.0052630f5ca04
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
1
datadog/agent:6aad9994de6a7
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
datafuselabs/databend-meta:v1.2.279ba877ee6cb4d
perl@5.36.0-7+deb12u1
no fix listed
1
datafuselabs/databend-query:v1.2.279a936843b85b4
perl@5.36.0-7+deb12u1
no fix listed
1
datalayers/datalayers:v2.2.1017b292079239
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
datalust/seq:5.0.832-pre9c731bb207a6
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
1
datalust/seq-input-gelf:3.0.441-x643de34aed5642
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
datamate/seafile-professional:11.0.202dd66b722464
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
dbeaver/cloudbeaver:26.1.287ab86d00f8c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
dbgate/dbgate:7.2.3f2dc7423ea88
perl@5.36.0-7+deb12u3
no fix listed
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
ddosify/alaz:v0.12.0ea602056d9ce
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_backend:3.2.93c11e3182652
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
perl@5.36.0-7+deb12u1
no fix listed
1
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
perl@5.36.0-7+deb12u1
no fix listed
1
decisionrules/ai-engine:latest38c377e7c01e
perl@5.40.1-6
5.40.1-6+deb13u1
1
deconzcommunity/deconz:2.29.2062de2362641
perl@5.36.0-7+deb12u1
no fix listed
1
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
1
defactops/defactops-backend:1.0.2307b663c0092a
perl@5.36.0-7+deb12u1
no fix listed
1
defectdojo/defectdojo-django:3.3.100c597abdbb535
perl@5.40.1-6
5.40.1-6+deb13u1
1
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
perl@5.40.1-6
5.40.1-6+deb13u1
1
dellcloud/category:distributed02fc234353a9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.