StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,402
of 17,792 indexed, latest versions
Container images
2,380
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,402 of 17,792 indexed charts deploy, on 2,380 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,342
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,402 by stars
ChartLatestAffected imagesRadar Score
video-analytics-demogpu-operator0.1.92 of 3See more

video-analytics-demo gpu-operator 0.1.9

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

15,820
video-analytics-demo-l4tgpu-operator0.1.31 of 3See more

video-analytics-demo-l4t gpu-operator 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
grafana-samplinggrafana1.1.71 of 2See more

grafana-sampling grafana 1.1.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

3,381
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

8,012
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

4,687
grayloggraylogVerified publisher1.0.22 of 4See more

graylog graylog 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
library/mongo:85211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

5,366
gridgain9gridgainVerified publisher1.1.101 of 2See more

gridgain9 gridgain 1.1.10

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/debian:12.12-slimd5d3f9c23164
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,229
routergroundcover1.12.3702 of 7See more

router groundcover 1.12.370

2 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
perl@5.40.1-6+e4
5.40.1-6+e15

Open the chart page →

5,531
librechat-exporterhajowielandVerified publisher1.0.01 of 1See more

librechat-exporter hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,308
rag-apihajowielandVerified publisher1.0.01 of 1See more

rag-api hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,723
web-checkhajowielandVerified publisher1.0.11 of 1See more

web-check hajowieland 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,434
hatchet-apihatchetOfficialVerified publisher0.19.01 of 4See more

hatchet-api hatchet 0.19.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,707
hatchet-hahatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-ha hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
perl@5.36.0-7+deb12u2
no fix listed
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,447
hatchet-stackhatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-stack hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
perl@5.36.0-7+deb12u2
no fix listed
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,447
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

9,233
web-charthcpark-ktcloudlab0.1.01 of 1See more

web-chart hcpark-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
hdx-oss-v2hdx-oss-v20.8.41 of 5See more

hdx-oss-v2 hdx-oss-v2 0.8.4

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:5.0.14-focal50cae5081ab4
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

6,758
heliconehelicone0.1.423 of 14See more

helicone helicone 0.1.42

3 of the 14 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
perl@5.36.0-7
no fix listed

Open the chart page →

25,250
helixhelix1.4.31 of 2See more

helix helix 1.4.3

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,696
test-apphellnet0.1.11 of 1See more

test-app hellnet 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
hello-worldhello-world-pponyVerified publisher0.3.01 of 1See more

hello-world hello-world-ppony 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.25.49ff236ed47fe
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,880
7dtdhelm-7dtd0.1.01 of 1See more

7dtd helm-7dtd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
vinanrra/7dtd-server:v0.4.4f9534490bd2b
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

10,730
my_web1helm-chart-by-piyush0.1.01 of 1See more

my_web1 helm-chart-by-piyush 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,715
pageshelm-chart-repos-camden1.0.02 of 3See more

pages helm-chart-repos-camden 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,262
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,018
home-assistant-matter-hubhelm-chart-roeiVerified publisher3.0.21 of 1See more

home-assistant-matter-hub helm-chart-roei 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
luligu/matterbridge:3.0.28f97884bebc2
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,835
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
iofog/router:2.0.17260cf861479
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

24,205
nginx-charthelm-chart-sample-app0.1.01 of 1See more

nginx-chart helm-chart-sample-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rraahul/test:latestbfe2c1183bc0
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

4,609
kube-downscalerhelm-charts-nr0.7.61 of 1See more

kube-downscaler helm-charts-nr 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
perl@5.36.0-7
no fix listed

Open the chart page →

4,319
locusthelm-charts-nr0.32.41 of 1See more

locust helm-charts-nr 0.32.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,824
node-problem-detectorhelm-charts-nr2.3.171 of 1See more

node-problem-detector helm-charts-nr 2.3.17

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,470
supersethelm-charts-nr1.1.31 of 1See more

superset helm-charts-nr 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,332
hello-world-charthelm-chart-test-hello-world0.1.01 of 1See more

hello-world-chart helm-chart-test-hello-world 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
mywebhelmchartwebapp0.0.51 of 1See more

myweb helmchartwebapp 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,715
my-apphelm-demo85640.2.71 of 2See more

my-app helm-demo8564 0.2.7

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dannielkil/book-frontend:latest937993927694
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,165
affinehelmforgeVerified publisher1.0.03 of 3See more

affine helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
pgvector/pgvector:0.8.6-pg16-bookwormccc6e83d6e35
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,115
alfiohelmforgeVerified publisher1.2.121 of 3See more

alfio helmforge 1.2.12

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,132
apachehelmforgeVerified publisher1.0.61 of 1See more

apache helmforge 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:2.4.68979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,715
appwritehelmforgeVerified publisher2.0.02 of 5See more

appwrite helmforge 2.0.0

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
appwrite/new:1.1.96-self-hostedaf65a77db50e
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,717
archiveboxhelmforgeVerified publisher1.1.121 of 1See more

archivebox helmforge 1.1.12

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
archivebox/archivebox:0.7.41a5a37331091
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,666
automatischhelmforgeVerified publisher1.3.72 of 4See more

automatisch helmforge 1.3.7

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,843
booklorehelmforgeVerified publisher2.0.11 of 3See more

booklore helmforge 2.0.1

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

2,343
castopodhelmforgeVerified publisher1.2.72 of 3See more

castopod helmforge 1.2.7

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
castopod/castopod:1.15.54e4f0440520f
perl@5.40.1-6
5.40.1-6+deb13u1
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

9,524
changedetectionhelmforgeVerified publisher1.1.161 of 1See more

changedetection helmforge 1.1.16

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.5f69554198005
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,630
chiefonboardinghelmforgeVerified publisher1.1.152 of 3See more

chiefonboarding helmforge 1.1.15

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,209
ckanhelmforgeVerified publisher1.3.84 of 6See more

ckan helmforge 1.3.8

4 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ckan/ckan-base:2.12.087ecf3f27ad6
perl@5.36.0-7+deb12u3
no fix listed
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

10,064
countlyhelmforgeVerified publisher1.2.62 of 3See more

countly helmforge 1.2.6

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
library/mongo:8.3.85211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

18,967
dawarichhelmforgeVerified publisher1.0.12 of 4See more

dawarich helmforge 1.0.1

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
postgis/postgis:18-3.67e00e8c3539f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

10,497
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cybrarist/discount-bandit:v4.0.4e9e2447ac666
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

30,281

Container images carrying it

2,380 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
linuxserver/jellyfin:10.7.72427dde159a2
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
linuxserver/plex:1.43.41f6f97d76e7b
perl@5.40.1-7ubuntu0.2
5.40.1-7ubuntu0.3
1
linuxserver/plex:1.43.22785a6ad64d3
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
linuxserver/plex:1.25.24a13ced2326c
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
linuxserver/unifi-controller:8.0.240ae315a3a456
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
linuxserver/unifi-controller:7.3.83ab105cc50322
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
linuxserver/unifi-network-application:10.6.101-ls145ccadcad5c640
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
lis314/project-zomboid-docker:latestaa2089c37920
perl@5.36.0-7+deb12u1
no fix listed
1
litmuschaos/mongo:4.2.899961210d467
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
livekit/ingress:v1.2.21ab01641b366
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
lmacka/snappass:2.1.293f5c048b7d4
perl@5.40.1-6
5.40.1-6+deb13u1
1
localstack/localstack:latest4abc29e923e5
perl@5.40.1-6
5.40.1-6+deb13u1
1
localstack/localstack:3.19d278167f2b7
perl@5.36.0-7+deb12u1
no fix listed
1
locustio/locust:2.24.151d866285170
perl@5.36.0-7+deb12u1
no fix listed
1
logiqai/flash:v3.10.265b996bc7bdc
perl@5.36.0-7+deb12u1
no fix listed
1
longhornio/longhorn-manager:v1.2.3dca34321452c
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
longhornio/upgrade-responder:v0.2.05875cef29348
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
louislam/its-mytabs:1.7.02e478d3170bd
perl@5.40.1-6
5.40.1-6+deb13u1
1
louislam/uptime-kuma:2.2.1-slim059b49d64739
perl@5.36.0-7+deb12u3
no fix listed
1
louislam/uptime-kuma:2.0.24c364ef96aad
perl@5.36.0-7+deb12u3
no fix listed
1
louislam/uptime-kuma:2.4.091e963bfda56
perl@5.36.0-7+deb12u3
no fix listed
1
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
perl@5.36.0-7+deb12u3
no fix listed
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
luligu/matterbridge:3.0.28f97884bebc2
perl@5.36.0-7+deb12u2
no fix listed
1
luligu/matterbridge:3.10.9c01108d904ec
perl@5.40.1-6
5.40.1-6+deb13u1
1
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-assure-identity:2.0.0147854a3c916
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-audit:2.0.079428add7f38
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-deployment:2.0.0ea8110886d38
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-management-api:2.0.0b9a23345eabd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
lumenvox/cloud-voice-verifier:2.0.014170ad34903
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
machines/filestash:latest0b8fc005e52e
perl@5.40.1-6
5.40.1-6+deb13u1
1
makemake1337/blutgang:latest8a55174fc830
perl@5.36.0-7+deb12u1
no fix listed
1
makeplane/plane-mcp-server:v0.3.071b7252adef0
perl@5.40.1-6
5.40.1-6+deb13u1
1
makersquad/harp-proxy:0.8.1a40dd258c527
perl@5.36.0-7+deb12u2
no fix listed
1
maksymhencha/educative-helm-bookapp:0.0.27f096a681192
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
perl@5.40.1-6
5.40.1-6+deb13u1
1
maponyacharles/sceptreai:api-0.1.127b37b092130a
perl@5.40.1-6
5.40.1-6+deb13u1
1
maptiler/server:4.8.07e206140057b
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
marcoimme/oidcmock:latestb6035c0721a8
perl@5.40.1-6
5.40.1-6+deb13u1
1
mariusm/vingress:0.5.0b3db186c3d72
perl@5.40.1-6
5.40.1-6+deb13u1
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.