StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,453
of 17,803 indexed, latest versions
Container images
2,605
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,453 of 17,803 indexed charts deploy, on 2,605 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,699
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0900
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,453 by stars
ChartLatestAffected imagesRadar Score
language-toolzekker6Verified publisher1.12.11 of 2See more

language-tool zekker6 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
erikvl87/languagetool:6.7-dockerupdate-3e1ea6a975388
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,569
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
zipkinzipkinVerified publisher0.5.01 of 1See more

zipkin zipkin 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
openzipkin/zipkin-slim:3.6.0a69e1057df36
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,160

Container images carrying it

2,605 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
jellyfin/jellyfin:10.11.6333b64771663
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
jellyfin/jellyfin:10.9.1079fb3d73a3e9
zlib@1:1.2.13.dfsg-1
no fix listed
1
jellyfin/jellyfin:10.10.77ae36aab93ef
zlib@1:1.2.13.dfsg-1
no fix listed
1
jellyfin/jellyfin:10.10.696b09723b22f
zlib@1:1.2.13.dfsg-1
no fix listed
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
zlib@1:1.2.13.dfsg-1
no fix listed
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
zlib@1:1.2.13.dfsg-1
no fix listed
1
jertel/elastalert2:2.31.03cbf63f9b7dc
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
jhidalgo3/hello-kubernetes:1.0.0.1397bf5ddfa8628d79f5
zlib@1.3.1-r1
1.3.2-r0
1
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
zlib@1:1.2.13.dfsg-1
no fix listed
1
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
zlib@1:1.2.13.dfsg-1
no fix listed
1
jkroepke/github_exporter:1.8.03d850992786d
zlib@1.3.1-r2
1.3.2-r0
1
jlesage/firefox:v25.03.1055c28defe31
zlib@1.3.1-r2
1.3.2-r0
1
jodogne/orthanc-plugins:latest6ff510aa29c2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
johly/airtrail:v3.11.19f702b91e0e7
zlib@1:1.2.13.dfsg-1
no fix listed
1
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
zlib@1.3.1-r2
1.3.2-r0
1
joplin/server:latest3f7b852959aa
zlib@1:1.2.13.dfsg-1
no fix listed
1
jordan/icinga2:latestf75025fe8ea8
zlib@1:1.2.13.dfsg-1
no fix listed
1
journeyapps/powersync-service:latestbf46f66e5dcc
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
joxit/docker-registry-ui:2.6.0bb5956a6b378
zlib@1.3.1-r2
1.3.2-r0
1
jpgouin/openldap:2.6.9-fixbfdd0088c776
zlib@1:1.2.13.dfsg-1
no fix listed
1
juicedata/juicefs-csi-driver:v0.33.0f918e7331c05
zlib@1:1.2.13.dfsg-1
no fix listed
1
jupyterhub/jupyterhub:5.4.63974ba945e65
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
justusbunsi/gitea-sonarqube-bot:v0.4.018dd43b470d9
zlib@1.3.1-r1
1.3.2-r0
1
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
kaushaln1/helm_node_app:lateste9f2d5dfdba0
zlib@1.3.1-r1
1.3.2-r0
1
kayrosuno/kping:latestf3bd44b29b0d
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
kenchrcum/grafana-dashboard-converter:0.3.105310497aea3f
zlib@1.3.1-r2
1.3.2-r0
1
kfirfer/elasticsearch-cacher:0.0.1cf81d0959256
zlib@1.3.1-r2
1.3.2-r0
1
khaliq/drl-exporter:latestf63cf53166f8
zlib@1.3.1-r1
1.3.2-r0
1
khaliq/pingme:v0.2.749f96888d2ab
zlib@1.3.1-r2
1.3.2-r0
1
kimai/kimai2:2.67.03084f1e5ecdc
zlib@1:1.2.13.dfsg-1
no fix listed
1
kinseii/wazuh-agent:4.14.17160eb143728
zlib@1:1.2.13.dfsg-1
no fix listed
1
kitware/cdash:v5.3.0d7767d9b9da4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
kiwigrid/k8s-sidecar:1.27.6db85bd553253
zlib@1.3.1-r1
1.3.2-r0
1
kixote/typemill4e9dff179519
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
kixote/typemill628f79a08cc7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
knspar/phronetis:0.1.4609499d2dc91a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
knspar/phronetis-operator:0.1.60c4f0543ee58
zlib@1:1.2.13.dfsg-1
no fix listed
1
koenkk/zigbee2mqtt:2.7.260a295b40f4e
zlib@1.3.1-r2
1.3.2-r0
1
komodorio/komoplane:0.2.19678d02c3f2e
zlib@1.3.1-r2
1.3.2-r0
1
kong/kong:3.9.16addf50e6bd8
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
kong/kong-ai-gateway:2.0.3367ed5985b76
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
kroniak/ssh-client:latest3aef87e1a00b
zlib@1.3.1-r2
1.3.2-r0
1
krontechnology/aapm-sidecar-injector:1.2.18b42fad987b3
zlib@1.3.1-r2
1.3.2-r0
1
kserve/models-web-app:v0.13.073486345a602
zlib@1:1.2.13.dfsg-1
no fix listed
1
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
zlib@1:1.2.13.dfsg-1
no fix listed
1
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
zlib@1:1.2.13.dfsg-1
no fix listed
1
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
zlib@1:1.2.13.dfsg-1
no fix listed
1
kubegems/redis:7.2.5-debian-12-r2870ee3a77add
zlib@1:1.2.13.dfsg-1
no fix listed
1
kubeovn/kube-ovn:v1.14.06722b54eb5c0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.