StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,450
of 17,797 indexed, latest versions
Container images
2,594
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,450 of 17,797 indexed charts deploy, on 2,594 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,686
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0902
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,450 by stars
ChartLatestAffected imagesRadar Score
lagoon-remotelagoon-chartsVerified publisher0.106.01 of 1See more

lagoon-remote lagoon-charts 0.106.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,125
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,048
bitwarden-crd-operatorlerentisVerified publisher0.18.01 of 1See more

bitwarden-crd-operator lerentis 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,008
lgtm-stacklgtm-stackVerified publisher0.1.31 of 8See more

lgtm-stack lgtm-stack 0.1.3

1 of the 8 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.10f4434c92b3e
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

5,679
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

35,432
litellmlitellm-helm0.2.01 of 1See more

litellm litellm-helm 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
zlib@1.3.1-r51
1.3.2-r0

Open the chart page →

4,439
halitesql0.1.51 of 2See more

ha litesql 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/litesql/ha:latest4029479b8ea7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,135
litlyxlitlyx0.2.04 of 5See more

litlyx litlyx 0.2.0

4 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
litlyx/litlyx-consumer:latest02225e77d316
zlib@1.3.1-r2
1.3.2-r0
litlyx/litlyx-dashboard:lateste64ff2d52385
zlib@1.3.1-r2
1.3.2-r0
litlyx/litlyx-producer:latest10407f36613f
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

7,934
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

7,240
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,781
plexluiscajl1.0.11 of 2See more

plex luiscajl 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1

Open the chart page →

864
dnsbl-exporterluzillaVerified publisher0.5.01 of 2See more

dnsbl-exporter luzilla 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/luzilla/unbound:v0.12.04fd8da9dc13c
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,149
actualbudgetm0nsterrr-actualbudgetVerified publisher2.10.01 of 1See more

actualbudget m0nsterrr-actualbudget 2.10.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,121
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,515
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,773
redismagefleet-redis0.1.01 of 1See more

redis magefleet-redis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/redis:7.274566c6910d1
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,079
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/redis:7.274566c6910d1
zlib@1:1.2.13.dfsg-1
no fix listed
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
zlib@1.2.13-150500.4.3.1
1.2.13-150500.4.6.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
zlib@1.2.13-150500.4.3.1
1.2.13-150500.4.6.1
longhornio/longhorn-ui:v1.10.0e60f36161511
zlib@1.2.13-150500.4.3.1
1.2.13-150500.4.6.1

Open the chart page →

13,685
plane-enterprisemakeplaneOfficialVerified publisher3.7.23 of 13See more

plane-enterprise makeplane 3.7.2

3 of the 13 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:15.7-alpine468d34fefd63
zlib@1.3.1-r1
1.3.2-r0
library/rabbitmq:3.13.6-management-alpine611107e29cce
zlib@1.3.1-r1
1.3.2-r0
valkey/valkey:7.2.11-alpine10328d00120d
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

4,973
mcpmcp-chartsVerified publisher0.0.233 of 7See more

mcp mcp-charts 0.0.23

3 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1

Open the chart page →

7,053
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,788
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

4,221
mimir-syncmimir-sync3.1.01 of 1See more

mimir-sync mimir-sync 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,300
miniapiminiapi1.3.21 of 1See more

miniapi miniapi 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
udhos/miniapi:1.3.28a7042db82ce
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

854
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
zlib@1:1.3.dfsg+really1.3.1-1ubuntu2
no fix listed

Open the chart page →

11,106
mockservermockserverOfficialVerified publisher8.0.01 of 1See more

mockserver mockserver 8.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
mockserver/mockserver:mockserver-8.0.0b8426e0b3c80
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,047
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,717
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

13,819
anki-servermt1905022.2.01 of 1See more

anki-server mt190502 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/mt190502/docker-anki-sync-server:25.09.2824245fd5a57
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

382
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/redmine:6.1.204ac44a2595b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,617
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,861
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,861
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,907
surveyornatsVerified publisher0.20.91 of 1See more

surveyor nats 0.20.9

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
natsio/nats-surveyor:0.9.9104a3e938b23
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

909
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,667
clowder2ncsaVerified publisher1.9.76 of 12See more

clowder2 ncsa 1.9.7

6 of the 12 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-frontend:2.0.0-beta.4fe97882672ca
zlib@1.3.1-r2
1.3.2-r0
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

37,538
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,861
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

14,398
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.33 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

3 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nats:2.11.9-alpine777787bbb4c7
zlib@1.3.1-r2
1.3.2-r0
natsio/nats-box:0.18.0abdc9f9f0120
zlib@1.3.1-r2
1.3.2-r0
natsio/nats-server-config-reloader:0.19.181edf32a3680
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

6,120
oadaoadaVerified publisher5.0.610 of 11See more

oada oada 5.0.6

10 of the 11 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
oada/auth:4.0.0c0d077e79ef4
zlib@1.3.1-r2
1.3.2-r0
oada/http-handler:4.0.0d87efe8ba4b0
zlib@1.3.1-r2
1.3.2-r0
oada/rev-graph-update:4.0.0ebc8343f05ff
zlib@1.3.1-r2
1.3.2-r0
oada/shares:4.0.0c6ffb4e8ed63
zlib@1.3.1-r2
1.3.2-r0
oada/startup:4.0.0fc09495e2f3c
zlib@1.3.1-r2
1.3.2-r0
oada/sync-handler:4.0.0b7a2cfc137cf
zlib@1.3.1-r2
1.3.2-r0
oada/users:4.0.0b6c562fa5b1b
zlib@1.3.1-r2
1.3.2-r0
oada/webhooks:4.0.06590c60de347
zlib@1.3.1-r2
1.3.2-r0
oada/well-known:4.0.07943fde43b19
zlib@1.3.1-r2
1.3.2-r0
oada/write-handler:4.0.08464c7f48aae
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

13,339
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,241
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,079
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,861
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

14,920
openrouter-botopenrouter-botVerified publisher0.2.01 of 1See more

openrouter-bot openrouter-bot 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
lifailon/openrouter-bot:latestea37e4b6b952
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,059
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,875
opentelemetry-demoopentelemetry-helmOfficialVerified publisher0.41.210 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

10 of the 34 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-shipping02602e60edbf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-fraud-detection1cdfd1bcf476
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/open-telemetry/demo:3.0.0-frontend9505e349e140
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

23,064
openvaultopenvaultVerified publisher0.8.12 of 2See more

openvault openvault 0.8.1

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,960
opikopikOfficialVerified publisher2.2.673See more

opik opik 2.2.67

3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.0862d86046bbc
zlib@1.3.1-r2
1.3.2-r0
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
zlib@1.3.1-r2
1.3.2-r0
curlimages/curl:8.12.194e9e444bcba
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,289
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,735

Container images carrying it

2,594 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/dmunozv04/isponsorblocktv:v2.9.05b8cfa805cb6
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/donkie/spoolman:0.24.042135965c42d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/dragoangel/mcrouter:v2026.06.29.0042afcffe67d0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/dysnix/docker-tiny:0.0.16b8e02430649
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/elastiflow/mermin:v0.4.1205053c8a3e2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/element-hq/matrix-authentication-service:1.24.052c18ffcc940
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/ellite/wallos:2.46.09ce55520e7bd
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/erlkoenig91/prompt-db-frontend:1.0.7121dc29eb14d
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/eslupmi/impulse:v3.7.03ded1b7ebca0
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor:latest5470b2ec3161
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ethpandaops/dispatchoor-api:latesta0b272f6682a
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/feresberbeche/alertigate:1.2.1628d49e0e01b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flanksource/mission-control-ai-assistant:1.0.1229a635cbeeb5
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flatcar/nebraska:4.0.05c9e99ff7167
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.