StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,394
of 17,790 indexed, latest versions
Container images
2,369
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,394 of 17,790 indexed charts deploy, on 2,369 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,334
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more35
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb15
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb15
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb15
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb15
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb15
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb15
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb15
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb15
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb15
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb15
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb15
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb15
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb14
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb14
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb14
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb14
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb14
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb14
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb14
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb14
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb14
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb14
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb14
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb14
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb14
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb14
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb14
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb13
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb12
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb12
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb12
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb12
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb12
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,394 by stars
ChartLatestAffected imagesRadar Score
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,487
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

5,483
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
perl@5.40.1-6
5.40.1-6+deb13u1
prowlercloud/prowler-api:5.31.14f252d579be2
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

8,203
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,022
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

24,038
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8

Open the chart page →

6,835
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

2,809
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

7,466
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,665
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,252
reportportalreportportal-ioOfficialVerified publisher26.8.123 of 15See more

reportportal reportportal-io 26.8.12

3 of the 15 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
perl@5.36.0-7+deb12u2
no fix listed
library/postgres:18.4a02db8cac496
perl@5.40.1-6
5.40.1-6+deb13u1
library/rabbitmq:4.3.4-managementeb5295d08332
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

11,943
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

7,487
retyc-csiretyc-csi0.2.01 of 3See more

retyc-csi retyc-csi 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,306
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,548
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,885
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

10,159
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,508
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,508
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

6,085
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,767
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

6,918
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,667
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

7,567
postgresromanow-helm-chartsVerified publisher1.7.11 of 1See more

postgres romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,638
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3

Open the chart page →

13,028
rstmdbrstmdb0.2.01 of 1See more

rstmdb rstmdb 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rstmdb/rstmdb:lateste5187f2aaace
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,061
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,942
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

5,321
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

13,562
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

30,310
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

11,022
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

38,115
teamcityscalified-teamcityVerified publisher2026.2.01 of 3See more

teamcity scalified-teamcity 2026.2.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,638
sceptresceptreai0.1.122 of 5See more

sceptre sceptreai 0.1.12

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
perl@5.40.1-6
5.40.1-6+deb13u1
maponyacharles/sceptreai:api-0.1.127b37b092130a
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,368
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

2,178
searxngsearxngVerified publisher0.1.111 of 3See more

searxng searxng 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-trixie64e361b630ec
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

818
securosecuroVerified publisher0.15.12 of 4See more

securo securo 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
pgvector/pgvector:pg16ccc6e83d6e35
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/securo-finance/securo-backend:0.15.162e030110745
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,350
immichsecustorVerified publisher2.0.51 of 1See more

immich secustor 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,011
viya4-home-dir-builderselerityVerified publisher1.1.01 of 2See more

viya4-home-dir-builder selerity 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/python:3.12-slim78387bc3881b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

864
sentry-k8ssentry-k8sVerified publisher1.4.15 of 11See more

sentry-k8s sentry-k8s 1.4.1

5 of the 11 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
library/postgres:16f1c3376c26f2
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/getsentry/snuba:26.7.210f8d164109b
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

16,194
seq-input-gelfseq-input-gelfVerified publisher0.3.11 of 2See more

seq-input-gelf seq-input-gelf 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
datalust/seq-input-gelf:3.0.441-x643de34aed5642
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

3,552
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
perl@5.36.0-7+deb12u2
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

11,545
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,185
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,185
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

6,864
clickhousesinextraVerified publisher0.22.01 of 1See more

clickhouse sinextra 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3.1092098d3b31dd
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

2,013
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

4,250
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,920
gitlab-omnibusslamdev0.1.61 of 2See more

gitlab-omnibus slamdev 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
daedalusproject/base_kubectl:latest6f72b5119eda
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

2,849
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,934

Container images carrying it

2,369 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
photoprism/photoprism:220629-jammy2954334adbda
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
photoprism/photoprism:260601650c6ad5a651
perl@5.40.1-7build1
5.40.1-7ubuntu0.3
1
photoprism/photoprism:260728958642220223
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
photoprism/photoprism:240711-cefc6fd632ca74
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
perl@5.40.1-6
5.40.1-6+deb13u1
1
pk910/powfaucet:v2-stable3dcae6a62896
perl@5.36.0-7+deb12u2
no fix listed
1
platform9community/admin-server:latestde3fa9b70df1
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
platform9community/api-gateway:latest40a4970de568
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
platform9community/customers-service:latest2089811e5cc6
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
platform9community/vets-service:latestd1165c94dfb3
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
platform9community/visits-service:latest8d11b50368c6
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
plexinc/pms-docker:1.43.3.10896-cb3ebc72d83a425ae9e13
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
1
pockost/matomo:5.13.07f5d293cbe4e
perl@5.40.1-6
5.40.1-6+deb13u1
1
pococze/python-hello-elos:2.0.07a1aab425e51
perl@5.36.0-7+deb12u1
no fix listed
1
polyaxon/polyaxon-api:2.16.42b55c3265a90
perl@5.40.1-6
5.40.1-6+deb13u1
1
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
perl@5.40.1-6
5.40.1-6+deb13u1
1
postgis/postgis:18-3.67e00e8c3539f
perl@5.40.1-6
5.40.1-6+deb13u1
1
powerdns/pdns-recursor-54:5.4.533aadc74a8d6
perl@5.40.1-6
5.40.1-6+deb13u1
1
pozetroninc/keydb:v6.0.1653ae64f29da8
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3
1
pposkrobko/risk-advisor:v1.0.0eaf260341dba
perl@5.22.1-9
5.22.1-9ubuntu0.9+esm3
1
praravind1801/helmimages:3.0.0f29d637b9ce1
perl@5.36.0-7+deb12u1
no fix listed
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
perl@5.36.0-7+deb12u1
no fix listed
1
prefecthq/prometheus-prefect-exporter:4.0.050d527a190ae
perl@5.40.1-6
5.40.1-6+deb13u1
1
pretix/standalone:2026.7.05df3b7aa852e
perl@5.40.1-6
5.40.1-6+deb13u1
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
perl@5.40.1-6
5.40.1-6+deb13u1
1
project2team4/react:latest3ff031a08887
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
perl@5.36.0-7+deb12u1
no fix listed
1
prowlercloud/prowler-api:5.31.14f252d579be2
perl@5.36.0-7+deb12u3
no fix listed
1
proxysql/proxysql:3.0.8947a7abad45b
perl@5.40.1-6
5.40.1-6+deb13u1
1
proxysql/proxysql:2.7.3a4d6c35c2949
perl@5.36.0-7+deb12u1
no fix listed
1
pschichtel/mindustry-server:v145.1b543e9c2d371
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
pschiffe/pdns-admin:0.4.137ebba8c2b8f
perl@0:5.74-483.el9
4:5.32.1-484.el9_8
1
psorab/elibrary:latest53b68896c4ce
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
qdrant/qdrant:v1.7.45f2a56b95266
perl@5.36.0-7+deb12u1
no fix listed
1
qdrant/qdrant:v1.4.166ee661d5241
perl@5.36.0-7
no fix listed
1
qjoly/kubernetes-coffee-image:simpleec94d3bdc035
perl@5.40.1-6
5.40.1-6+deb13u1
1
qonstrukt/php:8.4-v8-apache089af7925aa1
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
quickwit/quickwit:v0.8.1d29332bdadcc
perl@5.36.0-7+deb12u1
no fix listed
1
qumine/minecraft-server:v0.1.15c0b650d51132
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
1
qxip/qryn:3.2.3977acc9c7a9fd
perl@5.36.0-7+deb12u1
no fix listed
1
rabeh/apibootspring:1.0941007b6946e
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
perl@5.22.1-9ubuntu0.5
5.22.1-9ubuntu0.9+esm3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.