StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,395
of 17,797 indexed, latest versions
Container images
2,368
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,395 of 17,797 indexed charts deploy, on 2,368 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,330
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,395 by stars
ChartLatestAffected imagesRadar Score
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

14,576
plexbryopsida0.2.01 of 1See more

plex bryopsida 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

864
nginx-chartbtrepoVerified publisher0.1.01 of 1See more

nginx-chart btrepo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
category-microservicebusi-adsVerified publisher1.0.02 of 2See more

category-microservice busi-ads 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
library/mongo:latest5211c51171f5
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

11,978
gotenbergbysamioVerified publisher0.2.01 of 1See more

gotenberg bysamio 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8-chromiuma40f92d7419a
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

9,365
mariadbbysamioVerified publisher1.0.21 of 1See more

mariadb bysamio 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:12.0.2607835cd628b
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,958
duoauthproxy-radius-simplecaerus0.1.01 of 1See more

duoauthproxy-radius-simple caerus 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

3,023
rediscagriekinVerified publisher1.5.21 of 2See more

redis cagriekin 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/redis:8.8.1-trixie3eafabb4c93f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,401
ct-singlecalltelemetry0.8.41 of 7See more

ct-single calltelemetry 0.8.4

1 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
calltelemetry/web:0.8.1-rc7205d13269e350
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

10,672
pagescamden-pages1.0.02 of 3See more

pages camden-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,262
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
perl@5.36.0-7
no fix listed

Open the chart page →

8,042
geoservercamptocamp20.0.37 of 12See more

geoserver camptocamp2 0.0.3

7 of the 12 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
library/postgres:122f2a8c2a7d10
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

88,699
httpd-ldapauth-proxycamptocamp31.0.21 of 1See more

httpd-ldapauth-proxy camptocamp3 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:2.4.631ae8051591a5
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,351
nginx-s3-gatewaycamptocamp31.0.01 of 1See more

nginx-s3-gateway camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss-202503313db8145349a3
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,079
pgbouncer-tlscamptocamp32.3.02 of 2See more

pgbouncer-tls camptocamp3 2.3.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/haproxy:3.2de601ccc9a79
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/camptocamp/pgbouncer:latest19dc5663cac4
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,924
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

6,174
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

5,928
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

10,862
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latesta058034ca006
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

14,199
pagescarina-pages1.0.02 of 3See more

pages carina-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,262
pagescarmel-pages-dell1.0.02 of 3See more

pages carmel-pages-dell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,262
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

9,545
castai-hibernatecastaiVerified publisher0.2.121 of 1See more

castai-hibernate castai 0.2.12

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
castai/hibernate:v0.14da62858c8381
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,176
catalyst-agentscatalyst-agents0.1.331 of 18See more

catalyst-agents catalyst-agents 0.1.33

1 of the 18 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

17,127
getoutlinecfi20171.2.02 of 4See more

getoutline cfi2017 1.2.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.06f3e42ad37de
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.2.3d31852005202
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,484
opencvecfi20170.1.25 of 7See more

opencve cfi2017 0.1.2

5 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:trixie05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:18.06f3e42ad37de
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:7.2-bookworm74566c6910d1
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

15,522
nginx-chartchanhk10.1.01 of 1See more

nginx-chart chanhk1 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
clechaosnative0.2.71 of 6See more

cle chaosnative 0.2.7

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
litmuschaos/mongo:4.2.899961210d467
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

16,421
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,453
dv-podcharonOfficialVerified publisher0.19.12 of 5See more

dv-pod charon 0.19.1

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
perl@5.40.1-6
5.40.1-6+deb13u1
sigp/lighthouse:v8.1.344aa773dcf27
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

7,530
helioscharonVerified publisher0.1.51 of 1See more

helios charon 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
obolnetwork/helios:e10e753cb7e97d39d46
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

2,140
chart-dnazarenochart-dnazareno0.1.01 of 3See more

chart-dnazareno chart-dnazareno 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,873
kitchenowlchart-kitchenowl0.1.121 of 2See more

kitchenowl chart-kitchenowl 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,837
calibre-webcharts-derwitt-devVerified publisher1.1.21 of 1See more

calibre-web charts-derwitt-dev 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,951
home-assistant-otbrcharts-derwitt-devVerified publisher2.1.41 of 1See more

home-assistant-otbr charts-derwitt-dev 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/homeassistant-otbr:4.2.5282f840612d9
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,316
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

12,887
paperless-ngxcharts-derwitt-devVerified publisher2.1.41 of 1See more

paperless-ngx charts-derwitt-dev 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,664
chat-searchchat-searchVerified publisher0.1.71 of 1See more

chat-search chat-search 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/hemslo/chat-search:latest39d48995a5bd
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

4,068
opensipschetan-opensips0.1.01 of 1See more

opensips chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
chetangautamm/repo:Opensips_Buildb4b94155ff5a
perl@5.18.2-2ubuntu1.7
5.18.2-2ubuntu1.7+esm8

Open the chart page →

30,226
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

12,608
mysqld-exporterchoerodon0.1.01 of 1See more

mysqld-exporter choerodon 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,861
mcp-for-argocdchristianhuthVerified publisher2.0.01 of 1See more

mcp-for-argocd christianhuth 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,976
polrchristianhuthVerified publisher4.3.01 of 2See more

polr christianhuth 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

5,996
proxysqlchristianhuthVerified publisher3.1.11 of 1See more

proxysql christianhuth 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
proxysql/proxysql:3.0.110e95d1b7cc32
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,294
timetaggerchristianhuthVerified publisher2.2.01 of 1See more

timetagger christianhuth 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,983
arbitrumchronicleVerified publisher0.3.41 of 1See more

arbitrum chronicle 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,125
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

4,884
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

6,559
tor-proxychronicleVerified publisher0.1.01 of 1See more

tor-proxy chronicle 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
btcpayserver/tor:0.4.8.10e9585b68dc6b
perl@5.36.0-7
no fix listed

Open the chart page →

3,358
zksyncchronicleVerified publisher0.1.02 of 2See more

zksync chronicle 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
perl@5.40.1-6
5.40.1-6+deb13u1
matterlabs/external-node:v24.0.06cbfea4c694a
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,052

Container images carrying it

2,368 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
perl@5.36.0-7
no fix listed
1
ghcr.io/mollyim/mollysocket:1.7.1c675622546a4
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/monicahq/monica-next:main8be69156acbb
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
ghcr.io/mskazemi/kubeintellect:2.5.0b5d7681d1b9d
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/music-assistant/server:2.10.3885872224fa5
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/nmshd/backbone-admin-cli:7.2.1f7d095c04a75
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/nowakeai/svc-lb-mux:0.1.37d8fb8e996b6
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/observal/observal-api:1.13.1153b8b893232
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-03:0.0.0-2026-08-173e56bdd1b90d
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/ondrejsika/counter-frontend:latestc4166d2eb8eb
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/openrelik/openrelik-server:latestce1132261523
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.