StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,453
of 17,803 indexed, latest versions
Container images
2,605
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,453 of 17,803 indexed charts deploy, on 2,605 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,699
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0900
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,453 by stars
ChartLatestAffected imagesRadar Score
language-toolzekker6Verified publisher1.12.11 of 2See more

language-tool zekker6 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
erikvl87/languagetool:6.7-dockerupdate-3e1ea6a975388
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,569
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
zipkinzipkinVerified publisher0.5.01 of 1See more

zipkin zipkin 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
openzipkin/zipkin-slim:3.6.0a69e1057df36
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,160

Container images carrying it

2,605 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
phan2410/dummy-service:0.0.89c6ed6de26ca
zlib@1:1.2.13.dfsg-1
no fix listed
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
zlib@1:1.2.13.dfsg-1
no fix listed
1
photoprism/photoprism:260601650c6ad5a651
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1
1
photoprism/photoprism:260728958642220223
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1
1
photoprism/photoprism:251130db16ee6b1ba3
zlib@1:1.3.dfsg+really1.3.1-1ubuntu2
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2
1
phpdockerio/readability-js-server:1.8.0ea8354b42600
zlib@1.3.1-r2
1.3.2-r0
1
phpipam/phpipam-cron:v1.7.354468713454e
zlib@1.3.1-r1
1.3.2-r0
1
phpipam/phpipam-www:v1.7.3ace0efd24830
zlib@1.3.1-r1
1.3.2-r0
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
pk910/powfaucet:v2-stable3dcae6a62896
zlib@1:1.2.13.dfsg-1
no fix listed
1
platzio/backend:v0.6.5d5e5972f344b
zlib@1.3.1-r2
1.3.2-r0
1
platzio/frontend:v0.6.073083749b46a
zlib@1.3.1-r2
1.3.2-r0
1
plexinc/pms-docker:1.43.3.10896-cb3ebc72d83a425ae9e13
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
pmoscode/excalidraw:v0.18.08ee61554699c
zlib@1.3.1-r2
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.28.15-nginx-72b91d6a46e06
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.25.16-nginx-772c202c43c0aa
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.24.17-nginx-882c8dc938b2f9
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.27.16-nginx-306e1a36d646a3
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.26.15-nginx-579785e5b82334
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.31.7-nginx-7e3e189d9d519
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.30.11-nginx-7f9297eea817d
zlib@1.3.1-r1
1.3.2-r0
1
pnnlmiscscripts/k8s-node-image9:1.29.10-nginx-7fcd82530bc8b
zlib@1.3.1-r1
1.3.2-r0
1
pockost/matomo:5.13.07f5d293cbe4e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
pococze/python-hello-elos:2.0.07a1aab425e51
zlib@1:1.2.13.dfsg-1
no fix listed
1
polyaxon/polyaxon-api:2.17.0163707082036
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
polyaxon/polyaxon-streams:2.17.0a5fec70e757b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
postgis/postgis:17-3.4-alpine5a1dbedac34e
zlib@1.3.1-r1
1.3.2-r0
1
postgis/postgis:18-3.67e00e8c3539f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
powerdns/pdns-recursor-54:5.4.533aadc74a8d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
praravind1801/helmimages:3.0.0f29d637b9ce1
zlib@1:1.2.13.dfsg-1
no fix listed
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
zlib@1:1.2.13.dfsg-1
no fix listed
1
prefecthq/prefect:3.8.6-python3.11f518ebb9c353
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
prefecthq/prometheus-prefect-exporter:4.1.06e0e79cabdc2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
probely/farcaster-onprem-agent:v3741b34e8166f
zlib@1:1.2.13.dfsg-1
no fix listed
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2
1
prompve/prometheus-pve-exporter:3.8.2e3d501a82df5
zlib@1.3.1-r2
1.3.2-r0
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
zlib@1:1.2.13.dfsg-1
no fix listed
1
providus/undefined:lateste0b9f03bcd98
zlib@1.3.1-r2
1.3.2-r0
1
prowlercloud/prowler-api:5.31.14f252d579be2
zlib@1:1.2.13.dfsg-1
no fix listed
1
prowlercloud/prowler-ui:5.31.179ee83c8e702
zlib@1.3.1-r2
1.3.2-r0
1
proxysql/proxysql:3.0.8947a7abad45b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
proxysql/proxysql:2.7.3a4d6c35c2949
zlib@1:1.2.13.dfsg-1
no fix listed
1
psono/psono-server:5.0.03b974b43ea03
zlib@1.3.1-r1
1.3.2-r0
1
pubeldev/prusa_exporter:2.0.01091665a020a
zlib@1.3.1-r2
1.3.2-r0
1
pypiserver/pypiserver:v2.4.1e935e19433ef
zlib@1.3.1-r1
1.3.2-r0
1
qdrant/qdrant:v1.7.45f2a56b95266
zlib@1:1.2.13.dfsg-1
no fix listed
1
qdrant/qdrant:v1.4.166ee661d5241
zlib@1:1.2.13.dfsg-1
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.