StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,398
of 17,803 indexed, latest versions
Container images
2,370
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,398 of 17,803 indexed charts deploy, on 2,370 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,332
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,398 by stars
ChartLatestAffected imagesRadar Score
apineosync-apiVerified publisher0.5.411 of 1See more

api neosync-api 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,882
workerneosync-workerVerified publisher0.5.411 of 1See more

worker neosync-worker 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,860
core-keeper-dedicatednerkho-helm-charts0.1.11 of 1See more

core-keeper-dedicated nerkho-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
escaping/core-keeper-dedicated:latest87fa79255962
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,946
netbirdnetbird1.9.01 of 4See more

netbird netbird 1.9.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
netbirdio/management:0.46.0b0adc4ad4ec6
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

6,464
netris-dpu-agentnetrisai0.1.01 of 1See more

netris-dpu-agent netrisai 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
netrisai/bare-metal-dpu-agent:4.7.0.003c271efe749d0
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

1,588
neuralbank-stackneuralbank-stack0.1.01 of 4See more

neuralbank-stack neuralbank-stack 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:latest4210a3296e7c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,342
neurofaceneurofaceVerified publisher1.4.23 of 3See more

neuroface neuroface 1.4.2

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
openvino/model_server:2025.2.11e7cd1d70cc1
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
perl@0:5.74-481.1.el9_6
0:5.74-484.el9_8
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
perl@0:5.74-481.1.el9_6
0:5.74-484.el9_8

Open the chart page →

7,539
agent-controlnewrelic0.0.921 of 1See more

agent-control newrelic 0.0.92

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,917
agent-control-bootstrapnewrelic1.8.161 of 1See more

agent-control-bootstrap newrelic 1.8.16

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
newrelic/newrelic-agent-control-cli:1.24.047520b65d6b2
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

992
nfl-walletnfl-walletVerified publisher0.1.31 of 4See more

nfl-wallet nfl-wallet 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
perl@0:1.28-423.el8_10
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-3.el8
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.28-423.el8_10.1
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb

Open the chart page →

13,457
nginx-appnginx-app0.1.21 of 1See more

nginx-app nginx-app 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
nginx-samplenginx-sample0.5.01 of 1See more

nginx-sample nginx-sample 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.27.098f8ec75657d
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,320
nginx-sample-dependentnginx-sample-dependent0.2.01 of 1See more

nginx-sample-dependent nginx-sample-dependent 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.27.098f8ec75657d
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,320
nginx-examplengrok-ingress-helm0.3.01 of 2See more

nginx-example ngrok-ingress-helm 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,012
ciliumnicklasfrahm-ciliumVerified publisher0.7.42 of 6See more

cilium nicklasfrahm-cilium 0.7.4

2 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.18.2858f807ea4e2
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

7,246
terraform-backendnimbolus0.3.21 of 2See more

terraform-backend nimbolus 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.2.24521b581dbdd
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,511
redisnineinfra-charts0.7.51 of 1See more

redis nineinfra-charts 0.7.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:7.2.3a7cee7c8178f
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,969
basenn-coVerified publisher0.1.01 of 1See more

base nn-co 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
base-jobnn-coVerified publisher0.1.01 of 4See more

base-job nn-co 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

753
node-appnode-app-lili1.0.01 of 1See more

node-app node-app-lili 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
laly9999/node-app:1dd0e503913e1
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

10,320
node-debug-dashboardnode-debug-dashboardVerified publisher0.3.21 of 1See more

node-debug-dashboard node-debug-dashboard 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,056
firehose-corenodeifyVerified publisher1.2.62 of 2See more

firehose-core nodeify 1.2.6

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
sigp/lighthouse:latest-amd6450f66cfebb6d
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

6,602
firehose-ethereumnodeifyVerified publisher1.7.12 of 2See more

firehose-ethereum nodeify 1.7.1

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
sigp/lighthouse:v8.1.344aa773dcf27
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

5,716
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

4,768
app1node-web-app10.1.31 of 1See more

app1 node-web-app1 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
app2node-web-app10.1.31 of 1See more

app2 node-web-app1 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
nginx-chartnomadshk-nginx0.1.01 of 1See more

nginx-chart nomadshk-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

22,812
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,940
keycloak-helm-chartnotesprojectchart0.1.01 of 2See more

keycloak-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,686
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

6,903
notes-admin-front-helm-chartnotesprojectchart0.1.01 of 1See more

notes-admin-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
vlebediantsev/notes-admin-front:latest007c6670ff48
perl@5.36.0-7
no fix listed

Open the chart page →

15,234
notes-project-fromt-helm-chartnotesprojectchart0.1.01 of 1See more

notes-project-fromt-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
vlebediantsev/notes-project-front:latest945675fd2636
perl@5.36.0-7
no fix listed

Open the chart page →

15,306
registration-ms-front-helm-chartnotesprojectchart0.1.01 of 1See more

registration-ms-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
perl@5.36.0-7
no fix listed

Open the chart page →

15,290
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,966
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,923
zookeeper-helm-chartnotesprojectchart0.1.01 of 1See more

zookeeper-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
perl@5.18.2-2ubuntu1
5.18.2-2ubuntu1.7+esm8

Open the chart page →

41,473
fluentd-kubernetes-daemonsetnovum-rgi-charts0.1.01 of 1See more

fluentd-kubernetes-daemonset novum-rgi-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1-debian-graylogfda93f768f98
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,048
example-dev-toolsnoygal0.2.82 of 3See more

example-dev-tools noygal 0.2.8

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
linuxserver/codimd:latestb801bbcf6386
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

27,560
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

91,000
cloakbrowser-mcpobeoneVerified publisher0.3.11 of 1See more

cloakbrowser-mcp obeone 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,321
firecrawlobeoneVerified publisher3.0.63 of 5See more

firecrawl obeone 3.0.6

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/firecrawl/firecrawl:2.11.349ddbbb3023fea
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

10,311
libretranslateobeoneVerified publisher1.0.71 of 1See more

libretranslate obeone 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
libretranslate/libretranslate:v1.9.61de2d7056bb8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,045
ollamaobeoneVerified publisher0.3.11 of 2See more

ollama obeone 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,120
olvid-botobeoneVerified publisher0.3.31 of 1See more

olvid-bot obeone 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
olvid/bot-daemon:2.0.1e0e6b165d879
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,107
parcelapp-mcpobeoneVerified publisher0.1.01 of 1See more

parcelapp-mcp obeone 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

891
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,211
lensoci-ai-incubations0.1.141 of 16See more

lens oci-ai-incubations 0.1.14

1 of the 16 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

17,257
octantisoctantis0.1.01 of 1See more

octantis octantis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/vinny1892/octantis:latest45459c0910fc
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,618
mockoidcoidcmockVerified publisher0.0.11 of 1See more

mockoidc oidcmock 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
marcoimme/oidcmock:latestb6035c0721a8
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,347

Container images carrying it

2,370 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/itobey/playlist-mirror:1.0.0601082677a46
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.4-thick3c20900b5381
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/k8snetworkplumbingwg/multus-cni:latest-thickb2136983532b
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/klicktipp/csa-exporter:0.3.12c69513f9d85
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/klicktipp/snds-exporter:v0.2.4a23b389cb3c5
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/kubelauncher/cassandrab66aba320083
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/etcd8ab954711fb9
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/kafka43e1085cd0a8
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/keycloakafe3bd73d7cf
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/kubectl7280594a2f18
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/mariadbe25056a6ec52
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/memcachedb599ca6b3ff3
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/mongodb9bc37ed78a8b
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/mysqle9609bd50416
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
ghcr.io/kubelauncher/openldap8978aa002bc0
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/kubelauncher/postgresql1a27e11e5925
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.