StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,409
of 17,790 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,409 of 17,790 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,352
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more39
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,409 by stars
ChartLatestAffected imagesRadar Score
chowdacluster-deploy0.2.01 of 1See more

chowda cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/chowda:main86ab9effd1a5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,856
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
perl@5.36.0-7
no fix listed

Open the chart page →

8,072
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,219
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,193
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

6,982
clusterplexclusterplexVerified publisher1.1.102 of 3See more

clusterplex clusterplex 1.1.10

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,935
web-chartcms-ktcloudlab0.1.01 of 1See more

web-chart cms-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
appcnapVerified publisher1.2.01 of 1See more

app cnap 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4

Open the chart page →

4,648
door-agentcnoVerified publisher3.0.151 of 15See more

door-agent cno 3.0.15

1 of the 15 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

19,454
ms-emails-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-emails-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codedesignplus/ms-emails-grpc:lateste336012bc781
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,662
ms-emails-restcodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-emails-rest codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codedesignplus/ms-emails-rest:latestac84661c605e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,662
ms-licenses-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-licenses-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codedesignplus/ms-licenses-grpc:latest360144457f4d
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,158
ms-modules-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-modules-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codedesignplus/ms-modules-grpc:latest3f6aaa32d526
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,158
codehubcodehubVerified publisher6.2.183 of 5See more

codehub codehub 6.2.18

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/postgresql:latest42a8200d3597
perl@5.36.0-7+deb12u2
no fix listed
jupyterhub/jupyterhub:5.4.63974ba945e65
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

13,312
cohdicohdi0.2.21 of 3See more

cohdi cohdi 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,797
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,395
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.0491b0578c049
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

5,409
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

3,840
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

8,011
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

8,011
filesystem-exportercontainerooVerified publisher1.5.21 of 1See more

filesystem-exporter containeroo 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/containeroo/filesystem-exporter:v1.5.2a66121e16d4e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,261
ConvertServiceWeb-Helm-Buildconvertserviceweb-helm-build0.1.12 of 7See more

ConvertServiceWeb-Helm-Build convertserviceweb-helm-build 0.1.1

2 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/rabbitmq:3.11.5-management1b0f675d2f24
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

10,157
cortezacorteza1.1.02 of 3See more

corteza corteza 1.1.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

8,441
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

4,691
cosanetcosanet1.0.01 of 1See more

cosanet cosanet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,220
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,983
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

14,642
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/twigex/cospace:lateste5ecfd607e42
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,282
grafana-mcpcowboysysopVerified publisher2.0.01 of 1See more

grafana-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mcp/grafana:latest9362bcf6aa0e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,210
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,042
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,214
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

4,797
qdrantcowboysysopVerified publisher3.0.01 of 1See more

qdrant cowboysysop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.4.166ee661d5241
perl@5.36.0-7
no fix listed

Open the chart page →

3,049
rediscowboysysopVerified publisher21.2.61 of 1See more

redis cowboysysop 21.2.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/redis:8.0.2-debian-12-r4cdc2efa9c306
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,644
logstream-leadercriblio4.19.21 of 1See more

logstream-leader criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,277
logstream-mastercriblio2.9.91 of 1See more

logstream-master criblio 2.9.9

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cribl/cribl:3.0.2762747cb6796
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

9,296
logstream-workergroupcriblio4.19.21 of 1See more

logstream-workergroup criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,277
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,883
pagescrypticcode-helmchart1.0.02 of 3See more

pages crypticcode-helmchart 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,242
csghubcsghubVerified publisher2.4.311 of 34See more

csghub csghub 2.4.3

11 of the 34 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:7.4.9a8f08480e1f8
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/agenticflow:ee-v0.6-52f03fead54db
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/csgbot:v0.6.7-eeaf7191a9cf8a
perl@5.40.1-6
5.40.1-6+deb13u1
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
perl@5.36.0-7+deb12u1
no fix listed
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
perl@5.36.0-7+deb12u1
no fix listed
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
perl@5.36.0-7+deb12u1
no fix listed
opencsghq/kubectl:latestb6d87e1048c2
perl@5.36.0-7+deb12u2
no fix listed
opencsghq/label-studio:v2.4.0b4e849fcf94a
perl@5.40.1-6
5.40.1-6+deb13u1
opencsghq/postgres:15.1842578c9d3ebd
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

59,452
csgshipcsghubVerified publisher0.4.62 of 10See more

csgship csghub 0.4.6

2 of the 10 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:7.4.1171da9275c5f3
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/postgres:15.19b98600564e07
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

11,544
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
perl@5.40.1-6
5.40.1-6+deb13u1
opencsghq/postgres:15.19b98600564e07
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

6,732
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
perl@5.36.0-7
no fix listed

Open the chart page →

15,419
wazuhcsic-charts0.1.02 of 4See more

wazuh csic-charts 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
wazuh/wazuh-dashboard:4.4.11787550d2358
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
wazuh/wazuh-manager:4.4.121994f40e0da
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

13,944
cspconsolecspconsole1.3.114 of 5See more

cspconsole cspconsole 1.3.11

4 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
perl@5.36.0-7+deb12u3
no fix listed
cspconsole/csp-control-center:1.0.1046dda4a31bd6
perl@5.36.0-7+deb12u3
no fix listed
cspconsole/report-collector:1.0.15839750248193b
perl@5.36.0-7+deb12u3
no fix listed
cspconsole/report-processor:1.0.279a2d8840bfdf
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

12,394
custom-rhcl-consolecustom-rhcl-consoleVerified publisher0.1.21 of 3See more

custom-rhcl-console custom-rhcl-console 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/custom-rhcl-console:v0.1.270bb0cabd653
perl@0:5.74-481.1.el9_6
0:5.74-484.el9_8

Open the chart page →

1,946
cypikcypik-app0.1.02 of 2See more

cypik cypik-app 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1
library/nginx:1.25a484819eb602
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

7,548
view-cadvisorcypik-helm-chart0.1.01 of 1See more

view-cadvisor cypik-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
kserve/models-web-app:v0.13.073486345a602
perl@5.36.0-7+deb12u1
no fix listed
1
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
perl@5.36.0-7+deb12u1
no fix listed
1
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
perl@5.36.0-7+deb12u1
no fix listed
1
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
perl@5.36.0-7+deb12u1
no fix listed
1
kubegems/redis:7.2.5-debian-12-r2870ee3a77add
perl@5.36.0-7+deb12u1
no fix listed
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
kubeovn/kube-ovn:v1.14.06722b54eb5c0
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
kubeshop/bitnami-mongodb:8.3.8d48b172d99d8
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
kubeshop/testkube-minio:2025.10d8e1af6aca99
perl@5.36.0-7+deb12u3
no fix listed
1
kubesphere/examples-bookinfo-reviews-v2:1.13.06d93129beb32
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3
1
kudobuilder/controller:v0.9.069072d979708
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
kusionstack/kusion:v0.14.0126c8f0b0976
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
kuzwolka/aws9:main1ad759b961b1
perl@5.36.0-7+deb12u1
no fix listed
1
kuzwolka/aws9:news3e8880fbbb96
perl@5.36.0-7+deb12u1
no fix listed
1
kuzwolka/aws9:blog4a7707410bf1
perl@5.36.0-7+deb12u1
no fix listed
1
kuzwolka/aws9:shop84a9d9766345
perl@5.36.0-7+deb12u1
no fix listed
1
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
perl@5.40.1-6
5.40.1-6+deb13u1
1
kyovint/kyoimgusers:1.0.080084149156e
perl@5.40.1-6
5.40.1-6+deb13u1
1
labs64/auditflowc7b26d3ca11c
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
labs64/payment-gateway:0.0.10c66feefca17
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
labs64/traefik-authproxy:0.0.3dfc6086dfbce
perl@5.40.1-6
5.40.1-6+deb13u1
1
laly9999/node-app:1dd0e503913e1
perl@5.36.0-7+deb12u2
no fix listed
1
langflowai/langflow:1.12.13e3cac657435
perl@0:5.74-512.2.el10_0
0:5.74-515.el10_2
1
langflowai/langflow-frontend:latest54f67f1961fe
perl@5.36.0-7+deb12u3
no fix listed
1
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
perl@5.36.0-7+deb12u3
no fix listed
1
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
perl@5.36.0-7+deb12u3
no fix listed
1
langgenius/dify-api:1.0.0066035f93856
perl@5.36.0-7+deb12u1
no fix listed
1
langgenius/dify-api:1.16.1dcefa5f7c47c
perl@5.36.0-7+deb12u3
no fix listed
1
langgenius/dify-api:0.6.11fca918260dd6
perl@5.36.0-7+deb12u1
no fix listed
1
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
langgenius/dify-sandbox:0.2.15750e1111426e
perl@5.40.1-6
5.40.1-6+deb13u1
1
lib42/jackett:latesta55596cda383
perl@5.36.0-7+deb12u1
no fix listed
1
library/buildpack-deps:scmac978b783657
perl@5.40.1-6
5.40.1-6+deb13u1
1
library/cassandra:4.0093ee8ee5eb2
perl@5.36.0-7+deb12u3
no fix listed
1
library/cassandra:3.11.10b095ff3248c6
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
library/convertigo:8.4.3ae605bfcda05
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
library/couchdb:3.4.22817ad50b5c5
perl@5.36.0-7+deb12u1
no fix listed
1
library/debian:12.5-slim67f3931ad8cb
perl@5.36.0-7+deb12u1
no fix listed
1
library/debian:bookworm6ebd97fa83de
perl@5.36.0-7+deb12u3
no fix listed
1
library/debian:12.12-slimd5d3f9c23164
perl@5.36.0-7+deb12u3
no fix listed
1
library/debian:latestf324c7ff5432
perl@5.40.1-6
5.40.1-6+deb13u1
1
library/drupal:11.4.6-php8.5-apache-bookworm28f7931ecbcb
perl@5.36.0-7+deb12u3
no fix listed
1
library/eclipse-temurin:211f79c73404fb
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
library/eclipse-temurin:2185f00967bcc6
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
library/elasticsearch:8.17.32cc40b15dff8
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
library/elasticsearch:8.15.0310b9fc03b06
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
library/elasticsearch:7.17.0332c6d416808
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.