StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,492
of 17,813 indexed, latest versions
Container images
2,670
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,492 of 17,813 indexed charts deploy, on 2,670 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,744
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0916
zlibrpm1.2.11-lp151.5.3.1, 1.2.11-lp152.8.6.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-110
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,492 by stars
ChartLatestAffected imagesRadar Score
open-cacheopen-cacheVerified publisher0.1.01 of 1See more

open-cache open-cache 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/atolat/open-cache:latestd6105dd73eb4
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

448
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,807
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,758
jobopen-charts2.0.01 of 1See more

job open-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1

Open the chart page →

761
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

11,210
opencost-lensopencost-lens1.0.01 of 2See more

opencost-lens opencost-lens 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,114
everest-db-namespaceopeneverestVerified publisher1.16.21 of 1See more

everest-db-namespace openeverest 1.16.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
percona/everest-helmtools:0.0.1904458d04a18
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

769
cron-connectoropenfaas0.6.161 of 1See more

cron-connector openfaas 0.6.16

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

887
gcp-pubsub-connectoropenfaas0.0.11 of 1See more

gcp-pubsub-connector openfaas 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/gcp-pubsub-connector:0.0.18df071f5b719
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,163
kafka-connectoropenfaas0.7.151 of 1See more

kafka-connector openfaas 0.7.15

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/kafka-connector:0.7.160e58eac0e2f7
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,165
postgres-connectoropenfaas0.1.21 of 1See more

postgres-connector openfaas 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,217
pro-builderopenfaas0.6.131 of 2See more

pro-builder openfaas 0.6.13

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,756
rabbitmq-connectoropenfaas0.0.41 of 1See more

rabbitmq-connector openfaas 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,037
sqs-connectoropenfaas0.2.71 of 1See more

sqs-connector openfaas 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

913
kruise-gameopenkruise1.1.01 of 1See more

kruise-game openkruise 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
openkruise/kruise-game-manager:v1.1.0d3c6d69d2c39
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

934
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,418
openlit-operatoropenlit0.2.21 of 1See more

openlit-operator openlit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

862
openobserveopenobserve1.0.11 of 6See more

openobserve openobserve 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
natsio/nats-server-config-reloader:0.23.064cb6c858e79
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

3,083
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/redis:7.2.5-alpine6aaf3f5e6bc8
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

3,486
llm-stackopenproject-helm-chartsVerified publisher1.1.02 of 2See more

llm-stack openproject-helm-charts 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/python:3.12-slim78387bc3881b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,048
fineractopenshift0.1.13 of 4See more

fineract openshift 0.1.1

3 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
zlib@1.3.1-r1
1.3.2-r0
library/mariadb:11.4611a2fcc5fa7
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,978
sohaopensohaVerified publisher0.1.91 of 2See more

soha opensoha 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,831
terminalsopen-webui0.7.02 of 2See more

terminals open-webui 0.7.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/open-webui/terminals:latest5d2fd44366a4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,110
operatonoperatonVerified publisher1.0.51 of 1See more

operaton operaton 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
operaton/operaton:1.0.0-beta-4b35867ffe4d8
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,125
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
replicated/replicated-sdk:1.0.0-beta.318751b4963250
zlib@1.3.1-r4
1.3.2-r0

Open the chart page →

5,661
hiveopstty0.1.92 of 4See more

hive opstty 0.1.9

2 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
alpine/curl:8.12.08943e8c7e8e4
zlib@1.3.1-r2
1.3.2-r0
bitnamilegacy/postgresql:16233f361c5819
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,748
example-idpory0.64.01 of 1See more

example-idp ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
oryd/hydra-login-consent-node:v26.2.06465e95993b5
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

988
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

11,074
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.029 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

29 of the 40 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
zlib@1:1.2.13.dfsg-1
no fix listed
chromadb/chroma:1.5.7fc8dc8e11fb2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/postgres:17.5-alpine6567bca8d7bc
zlib@1.3.1-r2
1.3.2-r0
library/postgres:17.2-alpine7e5df973a748
zlib@1.3.1-r2
1.3.2-r0
library/redis:7.4.2-alpine02419de7eddf
zlib@1.3.1-r2
1.3.2-r0
yetiplatform/bloomcheck:dev85683ddfccbb
zlib@1.3.1-r2
1.3.2-r0
yetiplatform/yeti:2.9.09bcbe2650a14
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
yetiplatform/yeti-frontend:2.9.0873ef15d267b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-server:latestce1132261523
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

203,579
yetiosdfir-infrastructureVerified publisher1.0.52 of 4See more

yeti osdfir-infrastructure 1.0.5

2 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
yetiplatform/yeti:latest9c3006cedcca
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
yetiplatform/yeti-frontend:latest709064278c7e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

6,874
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

929
loki-standaloneot-container-kit1.0.22 of 5See more

loki-standalone ot-container-kit 1.0.2

2 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,667
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

5,428
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,507
webot-container-kit0.1.01 of 1See more

web ot-container-kit 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,956
workerot-container-kit0.1.01 of 1See more

worker ot-container-kit 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,956
outscale-s3-exploreroutscale-s3-explorer0.1.41 of 1See more

outscale-s3-explorer outscale-s3-explorer 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,818
lens-metric-proxyowan-charts0.1.01 of 1See more

lens-metric-proxy owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,956
avap2p-avs0.1.01 of 1See more

ava p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
avaprotocol/ap-avs:1.2.0c430ea5c37d6
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,362
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

12,572
ungatep2p-avs0.1.02 of 3See more

ungate p2p-avs 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
zlib@1:1.2.13.dfsg-1
no fix listed
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

27,901
parcaparca-rr0.1.01 of 2See more

parca parca-rr 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.24.23776500fde82
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,405
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
esteban1930/frontend-1:1.8.0f9078279632c
zlib@1.3.1-r2
1.3.2-r0
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

3,887
istio-cniparticuleio1.1.01 of 1See more

istio-cni particuleio 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gcr.io/istio-testing/install-cni:latestec6f9ea5757b
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

884
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

4,196
clickhousepascaliskeVerified publisher1.0.01 of 1See more

clickhouse pascaliske 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.12.6.70-alpinecd450891db46
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

491
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,071
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,427
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

4,878
linkdingpascaliskeVerified publisher3.0.01 of 1See more

linkding pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,921

Container images carrying it

2,670 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/dmunozv04/isponsorblocktv:v2.9.05b8cfa805cb6
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/donkie/spoolman:0.24.042135965c42d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/dragoangel/mcrouter:v2026.06.29.0042afcffe67d0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/drakkan/sftpgo:v2.7.59011fe608d33
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/dysnix/docker-tiny:0.0.16b8e02430649
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/eenchev/prometheus-universal-exporter:latest99122b443cf9
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/elastiflow/mermin:v0.4.1205053c8a3e2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/element-hq/matrix-authentication-service:1.24.052c18ffcc940
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/ellite/wallos:2.46.09ce55520e7bd
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/erlkoenig91/prompt-db-frontend:1.0.7121dc29eb14d
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/eslupmi/impulse:v3.7.03ded1b7ebca0
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor:latest5470b2ec3161
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ethpandaops/dispatchoor-api:latesta0b272f6682a
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/feresberbeche/alertigate:2.0.07b9bba80f207
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.35987ebe1dc85b0
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flanksource/facet:0.1.7237237038be15
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flanksource/mission-control-ai-assistant:1.0.1229a635cbeeb5
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/flatcar/nebraska:4.0.05c9e99ff7167
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
zlib@1.3.1-r2
1.3.2-r0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.