StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,395
of 17,797 indexed, latest versions
Container images
2,368
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,395 of 17,797 indexed charts deploy, on 2,368 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,330
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,395 by stars
ChartLatestAffected imagesRadar Score
immichhelmforgeVerified publisher1.2.84 of 5See more

immich helmforge 1.2.8

4 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

11,180
jenkinshelmforgeVerified publisher1.0.91 of 1See more

jenkins helmforge 1.0.9

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-lts-jdk21c1e4c349365f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,498
jupyterhubhelmforgeVerified publisher1.0.61 of 3See more

jupyterhub helmforge 1.0.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,471
komgahelmforgeVerified publisher1.4.151 of 1See more

komga helmforge 1.4.15

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

2,305
langflowhelmforgeVerified publisher2.0.11 of 1See more

langflow helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
langflowai/langflow:1.12.13e3cac657435
perl@0:5.74-512.2.el10_0
0:5.74-515.el10_2

Open the chart page →

145
listmonkhelmforgeVerified publisher1.1.141 of 3See more

listmonk helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,881
matterbridgehelmforgeVerified publisher1.0.31 of 1See more

matterbridge helmforge 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
luligu/matterbridge:3.10.9c01108d904ec
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

926
mcp-serverhelmforgeVerified publisher1.0.01 of 1See more

mcp-server helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.2.061f759a1421f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,455
medikeephelmforgeVerified publisher2.0.12 of 3See more

medikeep helmforge 2.0.1

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,463
memcachedhelmforgeVerified publisher1.0.81 of 1See more

memcached helmforge 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,081
metabasehelmforgeVerified publisher1.2.291 of 3See more

metabase helmforge 1.2.29

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,694
middlewarehelmforgeVerified publisher1.2.63 of 4See more

middleware helmforge 1.2.6

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
middlewareeng/middleware:0.3.1747d880812f1
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

9,801
moodlehelmforgeVerified publisher1.1.02 of 2See more

moodle helmforge 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,325
netboxhelmforgeVerified publisher2.0.13 of 4See more

netbox helmforge 2.0.1

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

4,396
nextcloudhelmforgeVerified publisher1.0.03 of 3See more

nextcloud helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nextcloud:34.0.4-apachede4ad9389386
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,244
notediscoveryhelmforgeVerified publisher2.0.11 of 1See more

notediscovery helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,270
opencuthelmforgeVerified publisher1.1.92 of 5See more

opencut helmforge 1.1.9

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,799
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,570
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,848
pimcorehelmforgeVerified publisher2.0.11 of 6See more

pimcore helmforge 2.0.1

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

3,216
qdranthelmforgeVerified publisher1.0.51 of 1See more

qdrant helmforge 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

836
reactive-resumehelmforgeVerified publisher1.0.02 of 4See more

reactive-resume helmforge 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/amruthpillai/reactive-resume:v5.3.0c487ec5edcfe
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,099
ryothelmforgeVerified publisher1.0.02 of 2See more

ryot helmforge 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

6,093
strapihelmforgeVerified publisher2.3.141 of 3See more

strapi helmforge 2.3.14

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,103
supersethelmforgeVerified publisher1.3.63 of 5See more

superset helmforge 1.3.6

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/superset:6.1.016b50bbef664
perl@5.36.0-7+deb12u3
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,813
text-embeddings-inferencehelmforgeVerified publisher1.0.01 of 2See more

text-embeddings-inference helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,579
tomcathelmforgeVerified publisher1.0.61 of 2See more

tomcat helmforge 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/tomcat:11.0.25-jdk17-temurin-noble9e1d2afa6898
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,301
twentyhelmforgeVerified publisher1.0.12 of 5See more

twenty helmforge 1.0.1

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,668
wallabaghelmforgeVerified publisher1.3.61 of 3See more

wallabag helmforge 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,802
zookeeperhelmforgeVerified publisher1.0.21 of 1See more

zookeeper helmforge 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

3,154
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

12,694
jellyfinhelm-l3st86Verified publisher0.1.81 of 1See more

jellyfin helm-l3st86 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jellyfin/jellyfin:latestaefb67e6a7ff
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,639
openaevhelm-openbasVerified publisher2.0.53 of 7See more

openaev helm-openbas 2.0.5

3 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
openaev/platform:3.260904.00a12ce8b3db9
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

7,564
openbashelm-openbasVerified publisher1.8.144 of 7See more

openbas helm-openbas 1.8.14

4 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
openbas/caldera-server:5.1.0a277796d9724
perl@5.36.0-7+deb12u1
no fix listed
openbas/platform:2.0.5d986d80b0a75
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

25,217
pageshelm-repo1.0.02 of 3See more

pages helm-repo 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,262
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,159
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8

Open the chart page →

6,105
my-nginxhelmtaiwo0.1.01 of 1See more

my-nginx helmtaiwo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,013
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

14,421
hivemq-edgehivemqOfficialVerified publisher0.1.361 of 1See more

hivemq-edge hivemq 0.1.36

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hivemq/hivemq-edge:2026.14d8250a233cea
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

1,251
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hmediade/printserver:latest481a552c8e1c
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
hmediade/printserver-init:latest7f005eb6c718
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

11,002
home-ha-mockhome-ha-mockVerified publisher2.0.51 of 1See more

home-ha-mock home-ha-mock 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,069
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
perl@5.36.0-7
no fix listed

Open the chart page →

16,444
home-security-demohome-security-demoVerified publisher2.0.121 of 3See more

home-security-demo home-security-demo 2.0.12

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,152
paperlesshpVerified publisher0.1.23 of 5See more

paperless hp 0.1.2

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/tika:3.3.1.090b7fa1dc018
perl@5.40.1-7build1
5.40.1-7ubuntu0.3
gotenberg/gotenberg:8.3467097317623a
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

27,104
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

8,807
eoloplanthttpd-eoloplant0.1.04 of 7See more

eoloplant httpd-eoloplant 0.1.0

4 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
codeurjc/toposervice:v1.09fb4c11e6a49
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
library/mongo:5.0.6-focal8e70544b6c76
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
library/rabbitmq:3.9-management8a279e9396a8
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

32,456
jenkinshuangchengwu-helm-chart0.1.01 of 2See more

jenkins huangchengwu-helm-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

749
mariadbhuangchengwu-helm-chart0.1.01 of 1See more

mariadb huangchengwu-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,935

Container images carrying it

2,368 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
stackstorm/st2sensorcontainer:3.8b1a338f64773
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
stackstorm/st2stream:3.81c8904a3bf67
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
stackstorm/st2timersengine:3.81bf35bfaf00c
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
stackstorm/st2web:3.809989a26c8b7
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
stackstorm/st2workflowengine:3.819fdfffdbba8
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
stalwartlabs/stalwart:v0.16.1425001929f36a
perl@5.40.1-6
5.40.1-6+deb13u1
1
stalwartlabs/stalwart:v0.16.22388dcb75a707
perl@5.40.1-6
5.40.1-6+deb13u1
1
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
perl@5.40.1-6
5.40.1-6+deb13u1
1
stalwartlabs/stalwart:v0.15.5dcf575db2d53
perl@5.40.1-6
5.40.1-6+deb13u1
1
stashapp/stash:latest24dbd7607174
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
stashapp/stash-box:latesta534c8afdf39
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
statcan/ckan:2.93921305425b8
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
statusim/nimbus-eth2:multiarch-latest6ccd9d382885
perl@5.36.0-7+deb12u3
no fix listed
1
steamcmd/steamcmd:latest5028a25268e7
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
strangebee/thehive:5.8.0-1a7f7b05fba24
perl@5.36.0-7+deb12u3
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
structurizr/onpremises:2025.11.094b5ffb5119c8
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
substratusai/verba:v0.4.0-baseURL261695be635eb
perl@5.36.0-7+deb12u1
no fix listed
1
supabase/edge-runtime:v1.74.02781daf92394
perl@5.36.0-7+deb12u3
no fix listed
1
supabase/edge-runtime:v1.59.0eff9c554d649
perl@5.36.0-7+deb12u1
no fix listed
1
supabase/logflare:latest49bfe526f1b4
perl@5.40.1-6
5.40.1-6+deb13u1
1
supabase/postgres-meta:v0.96.6a84cc713585e
perl@5.36.0-7+deb12u3
no fix listed
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
perl@5.36.0-7+deb12u1
no fix listed
1
supabase/realtime:v2.102.3aa1c92c0cf32
perl@5.36.0-7+deb12u3
no fix listed
1
supabase/realtime:v2.33.8d207e6e23ad3
perl@5.36.0-7+deb12u1
no fix listed
1
supabase/realtime:latestd3aa0c86c7b3
perl@5.40.1-6
5.40.1-6+deb13u1
1
supabase/studio:20241021-9f9b08326d8070c55e9
perl@5.36.0-7+deb12u1
no fix listed
1
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
perl@5.36.0-7+deb12u3
no fix listed
1
supabase/studio:latest94a2a9d2906e
perl@5.36.0-7+deb12u3
no fix listed
1
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
1
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
perl@5.36.0-7+deb12u1
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
perl@5.36.0-7+deb12u3
no fix listed
1
sysnet4admin/colosseum-agg:logbc25b152d88e
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8
1
sysnet4admin/colosseum-cms:loge74b43c7f492
perl@5.36.0-7+deb12u2
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
perl@5.36.0-7+deb12u2
no fix listed
1
sysnet4admin/colosseum-rwd:log74ded2d92f07
perl@5.40.1-6
5.40.1-6+deb13u1
1
tautulli/tautulli:latest670e68dd9efc
perl@5.40.1-6
5.40.1-6+deb13u1
1
tchiotludo/akhq:0.28.0c2824dc2ae44
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
tdengine/tdengine:3.0.2.24140a4021ddb
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
1
teknas09/bird-pod:latest12a1fa85c4aa
perl@5.36.0-7+deb12u1
no fix listed
1
tensorflow/serving:latest8a208c232297
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
perl@5.22.1-9ubuntu0.2
5.22.1-9ubuntu0.9+esm3
1
tensorzero/gateway:2026.6.0c939db4f27e4
perl@5.40.1-6
5.40.1-6+deb13u1
1
tensorzero/ui:2026.6.0f2563d54724e
perl@5.40.1-6
5.40.1-6+deb13u1
1
teslamate/teslamate:4.1.1cc87082e7d67
perl@5.40.1-6
5.40.1-6+deb13u1
1
testinprod/op-erigon:latest0a125bd77a2d
perl@5.36.0-7+deb12u1
no fix listed
1
thecampagnards/trafficlight-api:main7dca9d973837
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.