StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,398
of 17,803 indexed, latest versions
Container images
2,370
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,398 of 17,803 indexed charts deploy, on 2,370 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,332
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,398 by stars
ChartLatestAffected imagesRadar Score
user-manager-neo4jmoreillonVerified publisher0.9.74 of 6See more

user-manager-neo4j moreillon 0.9.7

4 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
moreillon/group-manager-front:v3.3.1c9f85db3baa5
perl@5.36.0-7+deb12u1
no fix listed
moreillon/user-manager:v5.0.2e1c9bfab5c16
perl@5.36.0-7
no fix listed
moreillon/user-manager-front:v5.1.06597e6b98d21
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

30,530
genericmorremeyer8.0.01 of 1See more

generic morremeyer 8.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:1.25.167f9a4f10d14
perl@5.36.0-7
no fix listed

Open the chart page →

6,852
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

96,742
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

15,924
codimdmt1905027.2.21 of 3See more

codimd mt190502 7.2.2

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,686
commafeedmt1905028.2.02 of 3See more

commafeed mt190502 8.2.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
athou/commafeed:6.2.0-postgresql5e388351df1a
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,796
filestashmt1905024.0.01 of 1See more

filestash mt190502 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
machines/filestash:latest0b8fc005e52e
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,568
ghostmt1905028.25.11 of 3See more

ghost mt190502 8.25.1

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ghost:6.25.12654b1e90413
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,032
keycloakmt1905021.4.61 of 3See more

keycloak mt190502 1.4.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,965
memosmt1905027.3.21 of 3See more

memos mt190502 7.3.2

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,654
minifluxmt1905021.1.61 of 3See more

miniflux mt190502 1.1.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,729
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

6,664
open-webuimt1905022.3.101 of 3See more

open-webui mt190502 2.3.10

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,686
paperless-ngxmt1905027.6.143 of 4See more

paperless-ngx mt190502 7.6.14

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:771da9275c5f3
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

12,130
umamimt1905028.1.41 of 3See more

umami mt190502 8.1.4

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,073
vaultwardenmt1905027.3.42 of 3See more

vaultwarden mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
vaultwarden/server:1.35.443498a94b22f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,812
vikunjamt1905027.1.21 of 3See more

vikunja mt190502 7.1.2

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,029
backendmulti-chart-app0.1.01 of 1See more

backend multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
frontendmulti-chart-app0.1.01 of 1See more

frontend multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
my-multi-chart-appmulti-chart-app0.1.01 of 2See more

my-multi-chart-app multi-chart-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,877
mum-discord-botmum-discord-botVerified publisher0.3.71 of 1See more

mum-discord-bot mum-discord-bot 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

13,796
devops-demomungari-development-charts1.0.42 of 4See more

devops-demo mungari-development-charts 1.0.4

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3

Open the chart page →

9,019
pagesmuthu-pages1.0.02 of 3See more

pages muthu-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,261
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8

Open the chart page →

97,407
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8

Open the chart page →

97,407
clickhousemyaVerified publisher0.2403.11 of 1See more

clickhouse mya 0.2403.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

3,611
cognativemyaVerified publisher0.2403.31 of 3See more

cognative mya 0.2403.3

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

7,396
my-app-namemy-app-name0.0.21 of 1See more

my-app-name my-app-name 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
viniciusfcf/gitops-quarkus-app-jvm:latestbba8ee1b5cd5
perl@0:1.28-420.el8
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-1.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
0:1.28-423.el8_10.1
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb

Open the chart page →

9,419
apachemy-chart-repo0.1.01 of 2See more

apache my-chart-repo 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/httpd:2.4979c38c2228d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,815
elasticsearch-chartmy-elasticsearch0.1.01 of 2See more

elasticsearch-chart my-elasticsearch 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

9,358
my-helm-chartmy-helm-charts-2024Verified publisher0.1.01 of 1See more

my-helm-chart my-helm-charts-2024 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
shamimkuet/nginx:1.0.2b82902a76a04
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,369
Practica_4_helmmy-heml-appVerified publisher0.1.03 of 7See more

Practica_4_helm my-heml-app 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
library/mongo:5.0.6-focal8e70544b6c76
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
library/rabbitmq:3.9-management8a279e9396a8
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

27,906
nginx-chartmyk8scharts1.0.01 of 1See more

nginx-chart myk8scharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
nginx-appmy-nginx-app0.1.31 of 1See more

nginx-app my-nginx-app 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
influxdbmy-personal-influxdb20.1.01 of 1See more

influxdb my-personal-influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,915
helloworldmysql2s3bk0.1.01 of 1See more

helloworld mysql2s3bk 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
mystoremystore-chart0.1.02 of 3See more

mystore mystore-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hazegoodlife/haaze:veggiesite50f02d2d5d4d
perl@5.36.0-7+deb12u1
no fix listed
hazegoodlife/haaze:milksite8d4c63169e14
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,506
myweatherhelmmyweather1.3.113 of 7See more

myweatherhelm myweather 1.3.11

3 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hecrom/myweatherangularclient:1.3.11bb0372939c19
perl@5.36.0-7+deb12u1
no fix listed
library/rabbitmq:3-managemente582c0bc7766
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

18,084
my-nginxna-helm-chartsVerified publisher1.0.01 of 1See more

my-nginx na-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,879
dependency-tracknaj980.0.91 of 3See more

dependency-track naj98 0.0.9

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dependencytrack/apiserver:latestf1da63ed610a
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,501
smallandnaj980.0.51 of 1See more

smalland naj98 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
perl@5.26.1-6ubuntu0.7
5.26.1-6ubuntu0.7+esm3

Open the chart page →

3,036
pagesnarain1.0.02 of 3See more

pages narain 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,261
pagesnarasimha-pages1.0.02 of 3See more

pages narasimha-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,261
akauntingnas-helm-chartsVerified publisher1.0.31 of 2See more

akaunting nas-helm-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
akaunting/akaunting:3.0.1552811b36ec3a
perl@5.36.0-7
no fix listed

Open the chart page →

12,930
pagesnavin-brixton1.0.02 of 3See more

pages navin-brixton 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,261
fahncsaVerified publisher1.1.11 of 1See more

fah ncsa 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
linuxserver/foldingathome:8.5.67477f6455f47
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,105
incorencsaVerified publisher1.38.02 of 29See more

incore ncsa 1.38.0

2 of the 29 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
perl@5.36.0-7+deb12u1
no fix listed
bitnamilegacy/postgresql:16.4.03ba6e6f11388
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

15,518
smilencsaVerified publisher1.1.07 of 23See more

smile ncsa 1.1.0

7 of the 23 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
perl@5.30.0-9ubuntu0.4
5.30.0-9ubuntu0.5+esm3
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
perl@5.36.0-7
no fix listed
socialmediamacroscope/image_crawler:0.1.2f508216be63c
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
perl@5.36.0-7
no fix listed
socialmediamacroscope/preprocessing:0.1.3ca863306314b
perl@5.36.0-7
no fix listed
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
perl@5.36.0-7
no fix listed

Open the chart page →

265,360
uptime-kumancsaVerified publisher1.7.21 of 1See more

uptime-kuma ncsa 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

30,514
neosyncneosyncVerified publisher0.5.412 of 3See more

neosync neosync 0.5.41

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
perl@5.36.0-7+deb12u2
no fix listed
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

7,314

Container images carrying it

2,370 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/reitermarkus/7d2d:main39953b387b61
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
perl@5.36.0-7
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/sdr-enthusiasts/docker-flightradar24:latest917e53402d51
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/securo-finance/securo-backend:0.16.0f452147e07f1
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/sergelogvinov/fluentd:1.19.33273d13f1e75
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/shadrus/srebot:0.14.09b4415e937b2
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/steadybit/agent:2.4.52bc7b260e44e
perl@5.40.1-6
5.40.1-6+deb13u1
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
1
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/strrl/wonder-mesh-net:v2026.629.0625b140372fd
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
perl@5.36.0-7+deb12u3
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.