StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,439
of 17,803 indexed, latest versions
Container images
2,579
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,439 of 17,803 indexed charts deploy, on 2,579 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,675
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0898
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,439 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,579 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
glpi/glpi:latest4b681082a79e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
goccx/go-file-server:latestf4b3ebea0303
zlib@1.3.1-r1
1.3.2-r0
1
goccx/go-file-server-ui:latest784b35910d52
zlib@1.3.1-r1
1.3.2-r0
1
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
zlib@1:1.2.13.dfsg-1
no fix listed
1
golenski/fibonacci-task-manager:2.0.03a2b36df247b
zlib@1:1.2.13.dfsg-1
no fix listed
1
golenski/fibonacci-worker:2.0.0954caf4aaf6a
zlib@1:1.2.13.dfsg-1
no fix listed
1
gorules/brms:latest3cd59e25efad
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
gotenberg/gotenberg:8.30206a6c708fc6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
gotenberg/gotenberg:8.3467097317623a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
gotenberg/gotenberg:8-chromiuma40f92d7419a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
gpappsoft/privacyidea-docker:3.12.2af7841adad26
zlib@1.3.1-r51
1.3.2-r0
1
gradiant/open5gs-dbctl:0.10.3332031245fce
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
gradle/build-cache-node:21.25bacbee677a9
zlib@1.3.1-r2
1.3.2-r0
1
grafana/agent:v0.44.23364714a2f64
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.5.101a63f4e032c
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.4.306bdcbb51fc2
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.18.10f4434c92b3e
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.18.0491b0578c049
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.16.384b76d56c594
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.11.38c7256f412fe
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.19.2b8ec653c4423
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/alloy:v1.14.0f50931848bd8
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/beyla:1.3.336d07f8d276e
zlib@1:1.2.13.dfsg-1
no fix listed
1
grafana/fluent-plugin-loki:latest8a3882e8c28b
zlib@1:1.2.13.dfsg-1
no fix listed
1
grafana/grafana:13.0.10f86bada30d6
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:13.0.1-security-012d1f9ae67c17
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:12.2.22ebef928d7e5
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:12.2.135c41e0fd029
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:11.2.2-security-01464eac539793
zlib@1.3.1-r1
1.3.2-r0
1
grafana/grafana:11.5.15781759b3d27
zlib@1.3.1-r1
1.3.2-r0
1
grafana/grafana:11.6.062d2b9d20a19
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:12.3.070d9599b186c
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:12.2.074144189b384
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:11.5.28b37a2f028f1
zlib@1.3.1-r1
1.3.2-r0
1
grafana/grafana:12.1.1a1701c218024
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:10.4.19a9043254ba16
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:12.0.2b5b59bfc7561
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:12.3.2ba93c9d192e5
zlib@1.3.1-r2
1.3.2-r0
1
grafana/grafana:11.3.1fa801ab6e1ae
zlib@1.3.1-r1
1.3.2-r0
1
grafana/loki:2.9.1035b02acc6765
zlib@1.3.1-r1
1.3.2-r0
1
grafana/mcp-grafana:0.14.042f541f22063
zlib@1:1.2.13.dfsg-1
no fix listed
1
grafana/oncall:v1.16.5499851658393
zlib@1.3.1-r2
1.3.2-r0
1
grafana/promtail:3.5.165bfae480b57
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/promtail:3.6.18dcfdf466da0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
grafana/tempo:2.6.0f55a8a1937ff
zlib@1.3.1-r1
1.3.2-r0
1
graphprotocol/graph-node:latestb0436347fb24
zlib@1:1.2.13.dfsg-1
no fix listed
1
graphprotocol/graph-node:v0.37.0f4452cdedd68
zlib@1:1.2.13.dfsg-1
no fix listed
1
graylog/graylog-enterprise:7.1.88a1f641cd7aa
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
greenkube/greenkube:0.3.00c01932282a4
zlib@1:1.2.13.dfsg-1
no fix listed
1
gresearch/armada-executor:latest393aff4aa8f2
zlib@1.3.1-r2
1.3.2-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.