StackRadar

CVE-2026-13221

Critical

Advisory

Published 13 Jul 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,409
of 17,790 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
41 of 41
affected packages

Red Hat Security Advisory: perl security update

Carried by container images the latest versions of 2,409 of 17,790 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+39 more5.18.2-2ubuntu1.7+esm8, 5.22.1-9ubuntu0.9+esm3, 5.26.1-6ubuntu0.7+esm3, 5.30.0-9ubuntu0.5+esm3+5 more2,352
perlrpm0:1.01-481.1.el9_6, 0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1+12 more0:1.01-484.el9_8, 0:1.28-423.el8_10.1, 0:5.74-475.module+el8.10.0+24767+f69b15b5, 0:5.74-484.el9_8+2 more39
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-13221UBUNTU-CVE-2026-13221RHSA-2026:67155RHSA-2026:67156RHSA-2026:67162RHSA-2026:67278RLSA-2026:67155ECHO-6100-7255-ee29
Also known as
USN-8675-1, USN-8675-2, USN-8684-1

Charts affected

2,409 by stars
ChartLatestAffected imagesRadar Score
kc-chartkc-chart1.0.01 of 3See more

kc-chart kc-chart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

8,877
web-chartkcilab0.1.01 of 1See more

web-chart kcilab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,245
kestra-starterkestraOfficialVerified publisher2.0.21 of 5See more

kestra-starter kestra 2.0.2

1 of the 5 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:17.5aadf2c0696f5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

5,455
helm-mongodb-operatorkeyporttech0.1.01 of 1See more

helm-mongodb-operator keyporttech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
perl@5.22.1-9ubuntu0.9
5.22.1-9ubuntu0.9+esm3

Open the chart page →

8,819
xwikikeyporttech0.2.01 of 2See more

xwiki keyporttech 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/xwiki:lts-postgres-tomcat56490ac14a31
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,640
allurekfirfer0.1.81 of 2See more

allure kfirfer 0.1.8

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.21.08a4d7e9308de
perl@5.26.1-6ubuntu0.3
5.26.1-6ubuntu0.7+esm3

Open the chart page →

12,538
phppgadminkfirfer0.1.121 of 1See more

phppgadmin kfirfer 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kfirfer/phppgadmin:7.13.0-22efb4a5d74a3
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

10,297
quickwitkfirfer0.7.21 of 1See more

quickwit kfirfer 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,503
rabbitmqkfirfer0.7.211 of 2See more

rabbitmq kfirfer 0.7.21

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/rabbitmq:3.12.100742852455ad
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

2,487
web-chartkgw-ktcloudlab0.1.01 of 1See more

web-chart kgw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
kiaekiae0.1.61 of 9See more

kiae kiae 0.1.6

1 of the 9 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
istio/pilot:1.15.2db08d6963975
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8

Open the chart page →

19,257
graphiti-mcpkiberonlabs0.1.21 of 1See more

graphiti-mcp kiberonlabs 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,410
cdashkitwareVerified publisher0.19.03 of 3See more

cdash kitware 0.19.0

3 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
perl@5.36.0-7+deb12u1
no fix listed
bitnamilegacy/postgresql:17.2.0-debian-12-r5cf63048c9209
perl@5.36.0-7+deb12u1
no fix listed
kitware/cdash:v5.3.0d7767d9b9da4
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

12,206
csa-exporterklicktippVerified publisher0.1.41 of 1See more

csa-exporter klicktipp 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/klicktipp/csa-exporter:0.3.12c69513f9d85
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,022
proxysqlklicktippVerified publisher1.3.01 of 1See more

proxysql klicktipp 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
proxysql/proxysql:3.0.8947a7abad45b
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

2,543
rspamdklicktippVerified publisher1.6.01 of 1See more

rspamd klicktipp 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
rspamd/rspamd:4.1.4e870599c970d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,843
snds-exporterklicktippVerified publisher0.2.51 of 1See more

snds-exporter klicktipp 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/klicktipp/snds-exporter:v0.2.4a23b389cb3c5
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,031
visual-regression-trackerkokuwa5.1.02 of 4See more

visual-regression-tracker kokuwa 5.1.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r15fdc6979dbc53
perl@5.36.0-7+deb12u1
no fix listed
visualregressiontracker/api:5.0.11941aeb8c8bf9
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,147
kollectkollectVerified publisher0.20.01 of 1See more

kollect kollect 0.20.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,953
nginx-chartkosunjo-nginx0.1.01 of 1See more

nginx-chart kosunjo-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
kovi-appkovi-charts0.8.11 of 1See more

kovi-app kovi-charts 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kennethreitz/httpbin:latest599fe5e50731
perl@5.26.1-6ubuntu0.2
5.26.1-6ubuntu0.7+esm3

Open the chart page →

14,846
kpingkpingOfficialVerified publisher0.3.51 of 1See more

kping kping 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kayrosuno/kping:latestf3bd44b29b0d
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,234
autopilotkrateo1.0.01 of 2See more

autopilot krateo 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,649
kubeflowkromanow94-kubeflow0.5.19 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

9 of the 30 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kserve/models-web-app:v0.13.073486345a602
perl@5.36.0-7+deb12u1
no fix listed
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
perl@5.36.0-7+deb12u1
no fix listed
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
perl@5.36.0-7+deb12u1
no fix listed
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
perl@5.36.0-7+deb12u1
no fix listed
library/python:3.7eedf63967cdb
perl@5.36.0-7
no fix listed
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
perl@5.36.0-7+deb12u1
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.3.0e8e263a919ff
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
perl@5.36.0-7+deb12u1
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.14.051404ef4419c
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

70,968
kron-aapm-agentkron-aapm-agent1.1.01 of 1See more

kron-aapm-agent kron-aapm-agent 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.1.07feef7d2ab42
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3

Open the chart page →

8,927
adventureworkskronkltdVerified publisher0.1.01 of 1See more

adventureworks kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
chriseaton/adventureworks:latest54c3384ce701
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8

Open the chart page →

4,491
fileserverkronkltdVerified publisher0.3.101 of 1See more

fileserver kronkltd 0.3.10

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
duck1123/lnd-fileserver:latest9d6fb247b714
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

3,772
mindsdbkronkltdVerified publisher0.1.01 of 1See more

mindsdb kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
mindsdb/mindsdb:latest163011c09299
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

9,698
rtlkronkltdVerified publisher0.1.01 of 2See more

rtl kronkltd 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
duck1123/cert-downloader:latest0e29f19fa67c
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8

Open the chart page →

5,647
world-dbkronkltdVerified publisher0.1.01 of 1See more

world-db kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghusta/postgres-world-db:latest879d0919fdcc
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,684
aapm-servicekron-pam-aapm-helmcharts1.2.51 of 1See more

aapm-service kron-pam-aapm-helmcharts 1.2.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
krontechnology/aapm-service:1.1.39dd602db8baa
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

2,648
kron-aapm-agentkron-pam-aapm-helmcharts1.2.51 of 1See more

kron-aapm-agent kron-pam-aapm-helmcharts 1.2.5

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.8.41cc7d5be6529
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8

Open the chart page →

2,749
web-chartktcloudhelm0.1.01 of 1See more

web-chart ktcloudhelm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
web-chartktcloudlab0.1.01 of 1See more

web-chart ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
web-chartktcloudlabstudent0.1.01 of 1See more

web-chart ktcloudlabstudent 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
web-chartktcloudljw0.1.01 of 1See more

web-chart ktcloudljw 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,849
kubeadapt-k8s-pulsekubeadaptVerified publisher1.0.11 of 1See more

kubeadapt-k8s-pulse kubeadapt 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,432
aperagkubeblocksVerified publisher0.0.0-nightly1 of 3See more

aperag kubeblocks 0.0.0-nightly

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

8,478
chaos-meshkubeblocksVerified publisher2.7.22 of 4See more

chaos-mesh kubeblocks 2.7.2

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
perl@5.36.0-7+deb12u2
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

13,572
ciliumkubeblocksVerified publisher1.15.11 of 2See more

cilium kubeblocks 1.15.1

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.15.1351d6685dc6f
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8

Open the chart page →

5,130
nvidia-gpu-exporterkubeblocksVerified publisher0.3.11 of 1See more

nvidia-gpu-exporter kubeblocks 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

4,502
openebskubeblocksVerified publisher3.10.02 of 3See more

openebs kubeblocks 3.10.0

2 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8
openebs/node-disk-operator:2.1.06afe2123c457
perl@5.34.0-3ubuntu1.1
5.34.0-3ubuntu1.8

Open the chart page →

10,587
spiderpoolkubeblocksVerified publisher1.2.02 of 4See more

spiderpool kubeblocks 1.2.0

2 of the 4 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
perl@5.30.0-9ubuntu0.5
5.30.0-9ubuntu0.5+esm3

Open the chart page →

8,470
kube-bootkube-bootVerified publisher1.2.21 of 1See more

kube-boot kube-boot 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
library/eclipse-temurin:2185f00967bcc6
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3

Open the chart page →

1,257
juicefs-tenantkubegems1.0.11 of 3See more

juicefs-tenant kubegems 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
kubegems/redis:7.2.5-debian-12-r2870ee3a77add
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

4,306
kubeintellectkubeintellectVerified publisher2.5.01 of 2See more

kubeintellect kubeintellect 2.5.0

1 of the 2 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
ghcr.io/mskazemi/kubeintellect:2.5.0b5d7681d1b9d
perl@5.40.1-6
5.40.1-6+deb13u1

Open the chart page →

1,882
kube-janitorkube-janitor0.3.31 of 1See more

kube-janitor kube-janitor 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
hjacobs/kube-janitor:23.7.0fbb303ed463c
perl@5.36.0-7
no fix listed

Open the chart page →

4,310
kube-netlagkube-netlagVerified publisher1.1.01 of 1See more

kube-netlag kube-netlag 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

1,488
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-13221.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3

Open the chart page →

7,208

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 41 of the 41 affected packages.

Container imageDigestPackageFixed inUsed by
aktosecurity/akto-api-security-dashboard:latest3aeaee66bc66
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
aktosecurity/akto-threat-detection-backend:latest15ebb75b94dc
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/akto-threat-detection-backend:1.15.7a6c1b933517f
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/data-ingestion-service213aded7adc5
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
alazidis/stornx:1.1.1602d4f7f090c
perl@5.36.0-7+deb12u3
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
perl@5.36.0-7+deb12u1
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
perl@5.26.1-6ubuntu0.5
5.26.1-6ubuntu0.7+esm3
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
andrianrf/backoffice:latest047a7837651e
perl@0:1.28-422.el8
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-3.el8
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.28-423.el8_10.1
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb
1
anguda/ant-media:2.5c435285fc241
perl@5.30.0-9ubuntu0.3
5.30.0-9ubuntu0.5+esm3
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
perl@5.36.0-7
no fix listed
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
perl@5.40.1-6
5.40.1-6+deb13u1
1
antrea/flow-aggregator:v2.7.0065193e7572f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
anujdatar/cups:25.07.01685df04a643b
perl@5.36.0-7+deb12u2
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/activemq-artemis:2.37.0bae523439ee3
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
apache/airflow:2.8.4-python3.964e58748b6b9
perl@5.36.0-7+deb12u1
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
perl@5.36.0-7+deb12u1
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
perl@5.36.0-7+deb12u1
no fix listed
1
apache/apisix:3.16.0-ubuntu5e47692cac00
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/camel-k:2.11.0d173e7efe258
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
perl@5.34.0-3ubuntu1.5
5.34.0-3ubuntu1.8
1
apache/hertzbeat:1.8.075d48a62748f
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
apache/iotdb:0.13.3-nodeafa47bf1692a
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/nifi-registry:1.27.063b8e3e40742
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
perl@5.34.0-3ubuntu1.2
5.34.0-3ubuntu1.8
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apachepulsar/pulsar:3.0.79c9947de139d
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
apachepulsar/pulsar:2.9.0d056c89b7131
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apachepulsar/pulsar:2.8.2d538416d5afe
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/ranger:2.7.076c176e8a0e4
perl@5.34.0-3ubuntu1.4
5.34.0-3ubuntu1.8
1
apache/rocketmq:5.3.0434d8398f996
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
apache/rocketmq-exporter:0.0.2c8fb51195444
perl@5.34.0-3ubuntu1.3
5.34.0-3ubuntu1.8
1
apache/skywalking-oap-server:9.2.0133d35d2c263
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/skywalking-ui:9.2.0295f1dc87d98
perl@5.34.0-3ubuntu1
5.34.0-3ubuntu1.8
1
apache/skywalking-ui:8.9.180530f0308a5
perl@5.30.0-9ubuntu0.2
5.30.0-9ubuntu0.5+esm3
1
apache/superset:4.0.1ab9467fd712c
perl@5.36.0-7+deb12u1
no fix listed
1
apache/tika:latest-full80072bb73dd3
perl@5.40.1-7ubuntu0.1
5.40.1-7ubuntu0.3
1
apache/tika:3.3.1.090b7fa1dc018
perl@5.40.1-7build1
5.40.1-7ubuntu0.3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.