StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,398
of 17,803 indexed, latest versions
Container images
2,370
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,398 of 17,803 indexed charts deploy, on 2,370 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,332
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,398 by stars
ChartLatestAffected imagesRadar Score
sealed-secrets-uisealed-secrets-uiVerified publisher0.0.81 of 1See more

sealed-secrets-ui sealed-secrets-ui 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

4,747
search-proxysearch-proxy2026.38.01 of 1See more

search-proxy search-proxy 2026.38.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/unique-ag/ai/search-proxy:2026.38.0aa6699b027bb
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,323
seawise-dashboardseawiseVerified publisher1.7.11 of 1See more

seawise-dashboard seawise 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
shwcloud/seawise-backup:v1.7.1a97479a54df4
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,129
pagessekharpkube1.0.02 of 3See more

pages sekharpkube 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,261
seldon-core-loadtestingseldon0.2.01 of 1See more

seldon-core-loadtesting seldon 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
seldonio/locust-core:0.81d0da98a2d76
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

75,872
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
perl@0:1.28-419.el8_4.1
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-1.el8
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-Thread-Queue@3.13-1.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.28-423.el8_10.1
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
0:3.14-457.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb

Open the chart page →

22,351
postgresself-hosters-by-nightVerified publisher0.14.31 of 1See more

postgres self-hosters-by-night 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,434
valkeyself-hosters-by-nightVerified publisher0.1.01 of 1See more

valkey self-hosters-by-night 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
valkey/valkey:9.1.164e361b630ec
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

854
sentry-dbsentry0.9.41 of 10See more

sentry-db sentry 0.9.4

1 of the 10 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.16d210dc69321e
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

10,987
cortezasergiotocaliniVerified publisher1.0.11 of 1See more

corteza sergiotocalini 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.60bcdcbcd3c63
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

3,346
guacamolesergiotocaliniVerified publisher1.0.01 of 2See more

guacamole sergiotocalini 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
guacamole/guacamole:1.5.50f62f6d17ab3
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

5,515
service-exampleservice-example-10.1.02 of 7See more

service-example service-example-1 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

9,132
serviceexampleserviceexample-chart0.3.03 of 4See more

serviceexample serviceexample-chart 0.3.0

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
tibyandocker/serviceexample:latesta4ad592cea84
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,084
serviceexampleservice-example-helm-chart0.1.02 of 4See more

serviceexample service-example-helm-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,332
service-exampleservice-example-jt0.1.11 of 9See more

service-example service-example-jt 0.1.1

1 of the 9 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
janzo83/serviceexample:latestfb3c4ac36f3e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,584
first-chartshashkist-test0.1.01 of 3See more

first-chart shashkist-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,088
my-nginx-appsherif-nginx-app0.1.01 of 1See more

my-nginx-app sherif-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
shopwareshopware-storeVerified publisher2.1.21 of 5See more

shopware shopware-store 2.1.2

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
valkey/valkey:83fbd2e3e4b6e
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,132
pagesshrutiujlan-pages1.0.02 of 3See more

pages shrutiujlan-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,261
hedgedocsi-gitops0.12.31 of 2See more

hedgedoc si-gitops 0.12.3

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.43a82e1f56c8f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,700
backendsignalen4.24.01 of 4See more

backend signalen 4.24.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
signalen/backend:2.50.14760256000738
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

11,751
postgresqlsignoz0.0.21 of 1See more

postgresql signoz 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,686
local-static-provisionersig-storage-local-static-provisioner2.9.01 of 1See more

local-static-provisioner sig-storage-local-static-provisioner 2.9.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,280
counter-dhlsikademo0.3.03 of 3See more

counter-dhl sikademo 0.3.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
ondrejsika/counter:latestd95eaeee2172
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/ondrejsika/counter-frontend:latestc4166d2eb8eb
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,966
gordy-redissikademo0.1.01 of 1See more

gordy-redis sikademo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,004
test-hello-worldsikademo0.1.01 of 1See more

test-hello-world sikademo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,215
hello-worldsikalabs0.17.01 of 1See more

hello-world sikalabs 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,215
hello-world-examplesikalabs0.1.31 of 1See more

hello-world-example sikalabs 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,215
kubernetes-dashboard-gatewaysikalabs0.1.01 of 1See more

kubernetes-dashboard-gateway sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
wordpress-mysqlsikalabs0.1.21 of 2See more

wordpress-mysql sikalabs 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,939
simple-websimple-webVerified publisher1.1.11 of 1See more

simple-web simple-web 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
bitwardensinextraVerified publisher0.10.21 of 1See more

bitwarden sinextra 0.10.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,785
clickhouse-keepersinextraVerified publisher0.7.21 of 1See more

clickhouse-keeper sinextra 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.12.6a65ca89ddbe8
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

2,234
fluentdsinextraVerified publisher1.4.51 of 1See more

fluentd sinextra 1.4.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/fluentd:1.19.33273d13f1e75
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,134
infisicalsinextraVerified publisher0.6.01 of 1See more

infisical sinextra 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
infisical/infisical:v0.165.602082bf13163
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,085
mongosqldsinextraVerified publisher0.3.71 of 1See more

mongosqld sinextra 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8

Open the chart page →

2,613
mongosyncsinextraVerified publisher0.4.01 of 1See more

mongosync sinextra 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,874
pgbouncersinextraVerified publisher0.17.01 of 1See more

pgbouncer sinextra 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,969
service-commonsinextraVerified publisher0.3.161 of 1See more

service-common sinextra 0.3.16

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/haproxy:2.8.288baa7d29a27a
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

872
sistas-chatbotsistas-chatbot5.0.21 of 6See more

sistas-chatbot sistas-chatbot 5.0.2

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jhipster/jhipster-registry:latest7184525acd4d
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

5,912
mariadbsitepilot1.0.31 of 1See more

mariadb sitepilot 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:10.692e50059ea0a
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

2,876
yopasssky-sailVerified publisher1.3.11 of 2See more

yopass sky-sail 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/memcached:1.6.409ae868852d0b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,065
envoyslamdev0.0.171 of 2See more

envoy slamdev 0.0.17

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.18.2e8b37c1d7578
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

4,719
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

9,261
slothsloth0.16.01 of 2See more

sloth sloth 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,007
oi-slurm-cluster-chartslurm-cluster-chart0.25.11 of 4See more

oi-slurm-cluster-chart slurm-cluster-chart 0.25.1

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

4,390
slurm-cluster-chartslurm-cluster-chart0.25.01 of 4See more

slurm-cluster-chart slurm-cluster-chart 0.25.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

4,390
amt-configuresmarthallVerified publisher0.1.11 of 1See more

amt-configure smarthall 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
boxcutter/meshcmd:1.1.384e13f01bcab
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

2,773
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,621
aafsmo-helm-chart6.0.01 of 14See more

aaf smo-helm-chart 6.0.0

1 of the 14 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
perl@5.22.1-9ubuntu0.6
5.22.1-9ubuntu0.9+esm3

Open the chart page →

79,246

Container images carrying it

2,370 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
opea/llm-docsum-tgi:1.002f9e8fa5d71
perl@5.36.0-7+deb12u1
no fix listed
1
opea/speecht5:1.0249afad3d268
perl@5.36.0-7+deb12u1
no fix listed
1
opea/tts:1.0257ae94709e9
perl@5.36.0-7+deb12u1
no fix listed
1
opea/web-retriever-chroma:1.0fe08165d7770
perl@5.36.0-7+deb12u1
no fix listed
1
openaev/platform:3.260904.00a12ce8b3db9
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
openbas/caldera-server:5.1.0a277796d9724
perl@5.36.0-7+deb12u1
no fix listed
1
openbas/platform:2.0.5d986d80b0a75
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
opencsghq/agenticflow:ee-v0.6.5-241cba9c366f1
perl@5.36.0-7+deb12u3
no fix listed
1
opencsghq/csghub-portal:v2.5.0-ee1cb36b49151e
perl@5.36.0-7+deb12u1
no fix listed
1
opencsghq/csghub-server:v2.5.0-ee587046575c2c
perl@5.36.0-7+deb12u3
no fix listed
1
opencsghq/csghub-xnet:v2.5.0-ee86ea22f495c7
perl@5.36.0-7+deb12u3
no fix listed
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
perl@5.36.0-7+deb12u1
no fix listed
1
opencsghq/gitlab-shell:v19.2.580a65ac370da
perl@5.36.0-7+deb12u3
no fix listed
1
opendatacube/explorer:latest120457ffcd69
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
opendatacube/pipelines:wofs-1.225d810e8504b8
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
opendatacube/restcube:latest91870111837c
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
opendatacube/wms:latest1b90cdf68831
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
opendatacube/wps:latest80df355a660b
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
openebs/rawfile-localpv:v0.15.396fd7987ea79
perl@5.40.1-6
5.40.1-6+deb13u1
1
openelevation/open-elevation:latest82fb21612e86
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
openhab/openhab:5.2.1bfd4a60e90da
perl@5.40.1-6
5.40.1-6+deb13u1
1
openkm/openkm-ce:6.3.113bc465a7461b
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
opennode/waldur-mastermind:8.1.24c82b15d9042
perl@5.40.1-6
5.40.1-6+deb13u1
1
openproject/hocuspocus:release-338001b288dc1359dfb5
perl@5.36.0-7+deb12u2
no fix listed
1
openproject/openproject:17.8.0-slim48952034215d
perl@5.40.1-6
5.40.1-6+deb13u1
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
openthread/border-router:v2026.09.07616b9d514de
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
openthread/otbr:latestf307f59f6432
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3
1
openvino/model_server:2025.2.11e7cd1d70cc1
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
openvpn/openvpn-as:latest2253c10ec652
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
opsmx11/issuegen:v2.1.05c50ca123d88
perl@5.18.2-2ubuntu1.4
5.18.2-2ubuntu1.7+esm8
1
otwld/velero-ui:0.10.31c228d9ef71b
perl@5.36.0-7+deb12u3
no fix listed
1
outlinewiki/outline:0.82.0494dfb9249a6
perl@5.36.0-7+deb12u1
no fix listed
1
outlinewiki/outline:1.10.1832051f039b4
perl@5.40.1-6
5.40.1-6+deb13u1
1
owncloud/server:10.15.051d9b74fc2a8
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
owncloud/server:10.16.274c53d341076
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
owncloud/server:10.16.3b3f9efdcd7f7
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8
1
oxfordsemantic/rdfox:5.6db17910eb855
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
oxfordsemantic/rdfox-init:5.6baf570ff968d
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
pangeo/base-notebook:2024.01.155fbe688a4f80
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
perl@5.40.1-6
5.40.1-6+deb13u1
1
payara/server-full:7.2026.2-jdk2531f1253f0cf8
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
penpotapp/backend:2.2.147853d9bb9dd
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
penpotapp/exporter:2.2.15c835ffd87ab
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
penpotapp/exporter:2.17.272a8061e8806
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
penpotapp/mcp:2.17.284f3f07ead11
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
pgvector/pgvector:pg17cf134a767f47
perl@5.36.0-7+deb12u3
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.