StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,382
of 17,792 indexed, latest versions
Container images
2,349
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,382 of 17,792 indexed charts deploy, on 2,349 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,311
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more38
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,382 by stars
ChartLatestAffected imagesRadar Score
mcp-serverhelmforgeVerified publisher1.0.01 of 1See more

mcp-server helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.2.061f759a1421f
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,453
medikeephelmforgeVerified publisher2.0.12 of 3See more

medikeep helmforge 2.0.1

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,430
memcachedhelmforgeVerified publisher1.0.81 of 1See more

memcached helmforge 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,074
metabasehelmforgeVerified publisher1.2.291 of 3See more

metabase helmforge 1.2.29

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,676
middlewarehelmforgeVerified publisher1.2.63 of 4See more

middleware helmforge 1.2.6

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
middlewareeng/middleware:0.3.1747d880812f1
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

9,771
moodlehelmforgeVerified publisher1.1.02 of 2See more

moodle helmforge 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,206
netboxhelmforgeVerified publisher2.0.13 of 4See more

netbox helmforge 2.0.1

3 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

4,347
nextcloudhelmforgeVerified publisher1.0.03 of 3See more

nextcloud helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nextcloud:34.0.4-apachede4ad9389386
perl@5.40.1-6
5.40.1-6+deb13u1
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

7,211
notediscoveryhelmforgeVerified publisher2.0.11 of 1See more

notediscovery helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,263
opencuthelmforgeVerified publisher1.1.92 of 5See more

opencut helmforge 1.1.9

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,772
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,560
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

4,819
pimcorehelmforgeVerified publisher2.0.11 of 6See more

pimcore helmforge 2.0.1

1 of the 6 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

3,212
qdranthelmforgeVerified publisher1.0.51 of 1See more

qdrant helmforge 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

829
reactive-resumehelmforgeVerified publisher1.0.02 of 4See more

reactive-resume helmforge 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/amruthpillai/reactive-resume:v5.3.0c487ec5edcfe
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,071
ryothelmforgeVerified publisher1.0.02 of 2See more

ryot helmforge 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

6,068
strapihelmforgeVerified publisher2.3.141 of 3See more

strapi helmforge 2.3.14

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,084
supersethelmforgeVerified publisher1.3.63 of 5See more

superset helmforge 1.3.6

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/superset:6.1.016b50bbef664
perl@5.36.0-7+deb12u3
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,784
text-embeddings-inferencehelmforgeVerified publisher1.0.01 of 2See more

text-embeddings-inference helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,563
tomcathelmforgeVerified publisher1.0.61 of 2See more

tomcat helmforge 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/tomcat:11.0.25-jdk17-temurin-noble9e1d2afa6898
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,253
twentyhelmforgeVerified publisher1.0.12 of 5See more

twenty helmforge 1.0.1

2 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

3,649
wallabaghelmforgeVerified publisher1.3.61 of 3See more

wallabag helmforge 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,784
zookeeperhelmforgeVerified publisher1.0.21 of 1See more

zookeeper helmforge 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
perl@5.34.0-3ubuntu1.7
5.34.0-3ubuntu1.8

Open the chart page →

3,145
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

12,680
jellyfinhelm-l3st86Verified publisher0.1.81 of 1See more

jellyfin helm-l3st86 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jellyfin/jellyfin:latestaefb67e6a7ff
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,626
openaevhelm-openbasVerified publisher2.0.53 of 7See more

openaev helm-openbas 2.0.5

3 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
openaev/platform:3.260904.00a12ce8b3db9
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

7,528
openbashelm-openbasVerified publisher1.8.144 of 7See more

openbas helm-openbas 1.8.14

4 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
openbas/caldera-server:5.1.0a277796d9724
perl@5.36.0-7+deb12u1
no fix listed
openbas/platform:2.0.5d986d80b0a75
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

25,190
pageshelm-repo1.0.02 of 3See more

pages helm-repo 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

20,242
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,154
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8

Open the chart page →

6,085
my-nginxhelmtaiwo0.1.01 of 1See more

my-nginx helmtaiwo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,996
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

14,363
hivemq-edgehivemqOfficialVerified publisher0.1.361 of 1See more

hivemq-edge hivemq 0.1.36

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hivemq/hivemq-edge:2026.14d8250a233cea
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

1,238
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hmediade/printserver:latest481a552c8e1c
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
hmediade/printserver-init:latest7f005eb6c718
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

10,948
home-ha-mockhome-ha-mockVerified publisher2.0.51 of 1See more

home-ha-mock home-ha-mock 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,065
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
perl@5.36.0-7
no fix listed

Open the chart page →

16,415
home-security-demohome-security-demoVerified publisher2.0.121 of 3See more

home-security-demo home-security-demo 2.0.12

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,148
paperlesshpVerified publisher0.1.23 of 5See more

paperless hp 0.1.2

3 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/tika:3.3.1.090b7fa1dc018
perl@5.40.1-7build1
5.40.1-7ubuntu0.3
gotenberg/gotenberg:8.3467097317623a
perl@5.40.1-6
5.40.1-6+deb13u1
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

26,984
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

8,751
eoloplanthttpd-eoloplant0.1.04 of 7See more

eoloplant httpd-eoloplant 0.1.0

4 of the 7 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
codeurjc/toposervice:v1.09fb4c11e6a49
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3
library/mongo:5.0.6-focal8e70544b6c76
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
library/rabbitmq:3.9-management8a279e9396a8
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

32,372
jenkinshuangchengwu-helm-chart0.1.01 of 2See more

jenkins huangchengwu-helm-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

738
mariadbhuangchengwu-helm-chart0.1.01 of 1See more

mariadb huangchengwu-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,924
prometheushuangchengwu-helm-chart0.1.02 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
apache/skywalking-ui:9.2.0295f1dc87d98
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8

Open the chart page →

16,495
skywalking-v1huangchengwu-helm-chart0.1.02 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
apache/skywalking-ui:8.9.180530f0308a5
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

20,741
tdenginehuangchengwu-helm-chart3.0.21 of 1See more

tdengine huangchengwu-helm-chart 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
tdengine/tdengine:3.0.2.24140a4021ddb
perl@5.26.1-6ubuntu0.6
5.26.1-6ubuntu0.7+esm3

Open the chart page →

3,755
townsquarehuscker-chartsVerified publisher1.0.41 of 2See more

townsquare huscker-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,428
add-crismuxhydraVerified publisher0.9.31 of 1See more

add-crismux hydra 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,299
hydrahydraVerified publisher0.9.52 of 2See more

hydra hydra 0.9.5

2 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,084
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,785

Container images carrying it

2,349 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
aktosecurity/akto-threat-detection-backend:1.15.7a6c1b933517f
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/data-ingestion-service213aded7adc5
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
alazidis/stornx:1.1.1602d4f7f090c
perl@5.36.0-7+deb12u3
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
perl@5.36.0-7+deb12u1
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
andrianrf/backoffice:latest047a7837651e
perl@0:1.28-422.el8
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-3.el8
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.28-423.el8_10.1
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb
1
anguda/ant-media:2.5c435285fc241
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
perl@5.36.0-7
no fix listed
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
perl@5.40.1-6
5.40.1-6+deb13u1
1
antrea/flow-aggregator:v2.7.0065193e7572f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
anujdatar/cups:25.07.01685df04a643b
perl@5.36.0-7+deb12u2
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/activemq-artemis:2.37.0bae523439ee3
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
apache/airflow:2.8.4-python3.964e58748b6b9
perl@5.36.0-7+deb12u1
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
perl@5.36.0-7+deb12u1
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
perl@5.36.0-7+deb12u1
no fix listed
1
apache/apisix:3.16.0-ubuntu5e47692cac00
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/camel-k:2.11.0d173e7efe258
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
apache/hertzbeat:1.8.075d48a62748f
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/iotdb:0.13.3-nodeafa47bf1692a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/nifi-registry:1.27.063b8e3e40742
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apachepulsar/pulsar:3.0.79c9947de139d
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
apachepulsar/pulsar:2.9.0d056c89b7131
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apachepulsar/pulsar:2.8.2d538416d5afe
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/ranger:2.7.076c176e8a0e4
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
apache/rocketmq:5.3.0434d8398f996
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
apache/rocketmq-exporter:0.0.2c8fb51195444
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
apache/skywalking-oap-server:9.2.0133d35d2c263
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/skywalking-ui:9.2.0295f1dc87d98
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
apache/skywalking-ui:8.9.180530f0308a5
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/superset:4.0.1ab9467fd712c
perl@5.36.0-7+deb12u1
no fix listed
1
apache/tika:latest-full80072bb73dd3
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
apache/tika:3.3.1.090b7fa1dc018
perl@5.40.1-7build1
5.40.1-7ubuntu0.3
1
apache/tika:2.9.0.092d055a84e9e
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
perl@5.40.1-6
5.40.1-6+deb13u1
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.