StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,453
of 17,803 indexed, latest versions
Container images
2,605
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,453 of 17,803 indexed charts deploy, on 2,605 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,699
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0900
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,453 by stars
ChartLatestAffected imagesRadar Score
language-toolzekker6Verified publisher1.12.11 of 2See more

language-tool zekker6 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
erikvl87/languagetool:6.7-dockerupdate-3e1ea6a975388
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,569
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
zipkinzipkinVerified publisher0.5.01 of 1See more

zipkin zipkin 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
openzipkin/zipkin-slim:3.6.0a69e1057df36
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,160

Container images carrying it

2,605 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
library/eclipse-temurin:2185f00967bcc6
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1
1
library/ghost:6.37.01ef2e532ca4d
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/ghost:6.25.12654b1e90413
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/ghost:6.41.129773d6be407
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/ghost:5.79.083f7bf209844
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/ghost:6.64.0a31d03f1f629
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/ghost:6.22.0-alpine3.23ac533a6988ee
zlib@1.3.1-r2
1.3.2-r0
1
library/golang:latest512690a56605
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/haproxy:3.4.10f597665a2a6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/haproxy:3.1-bookworm49a0a0d6f0b8
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/haproxy:2.8.288baa7d29a27a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/haproxy:2.9.6fc5748ff7c72
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/httpd:2.4.631ae8051591a5
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/influxdb:2.8571eb4514977
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/influxdb:3.10.5-core695a8063ff10
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/influxdb:3.11.2-enterprise6ce2bf22499b
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/influxdb:1.12.3-meta8812029260b5
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/influxdb:1.12.3-datab0f9fc41ed79
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/influxdb:latestf75e48af0598
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/mariadb:112439dcd7d140
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mariadb:12.0.25b6a1eac15b8
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mariadb:12.3.2628f228f0fd5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mariadb:12.3.2a02fe89cb597
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mariadb:12.2.2b1cb255a9939
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mariadb:11.7.2fcc7fcd7114a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/matomo:5.1.2-apache2415789e1602
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/matomo:5.13.0-apache8e6bdd396496
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/memcached:1.6.32-alpine0a27d9d5084f
zlib@1.3.1-r1
1.3.2-r0
1
library/memcached:1.6.4226983a43c918
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/memcached:1.6.29-alpine462ae4a35c26
zlib@1.3.1-r1
1.3.2-r0
1
library/memcached:1.6.39-alpine3.227b45203a99eb
zlib@1.3.1-r2
1.3.2-r0
1
library/memcached:1.6.409ae868852d0b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/memcached:1.6.40cc523a19da58
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/memcached:1.6.45dc561d52bb8a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/memcached:1.6.42-trixiee2a8683c7fbb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/memcached:1.6.38-alpinee93269864a7d
zlib@1.3.1-r2
1.3.2-r0
1
library/mongo:8.002a0cc7939f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mongo:noble6ede2806c78e
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mongo:8.0.11dca8d11fe467
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
library/mysql:8.0-debian9382e4f6f7f0
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/nats:2.12.2-alpine2d5fce3229ae
zlib@1.3.1-r2
1.3.2-r0
1
library/nats:2.11.9-alpine777787bbb4c7
zlib@1.3.1-r2
1.3.2-r0
1
library/nats:2.12.3-alpine88fe8e0e09d6
zlib@1.3.1-r2
1.3.2-r0
1
library/nats:2.10.17-alpineb7752304692b
zlib@1.3.1-r1
1.3.2-r0
1
library/neo4j:2026.05.0-enterprise2caf944aa4a5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/neo4j:2026.02.25ab4ab0358cf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/neo4j:2026.05.06c162e2432f8
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/nextcloud:31.0.6-apache588609d76b21
zlib@1:1.2.13.dfsg-1
no fix listed
1
library/nextcloud:34.0.4:34.0.4-apache8418c398d767
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
library/nextcloud:31.0.10-apacheb7faa1653c39
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.