StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,492
of 17,813 indexed, latest versions
Container images
2,670
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,492 of 17,813 indexed charts deploy, on 2,670 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,744
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0916
zlibrpm1.2.11-lp151.5.3.1, 1.2.11-lp152.8.6.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-110
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,492 by stars
ChartLatestAffected imagesRadar Score
open-cacheopen-cacheVerified publisher0.1.01 of 1See more

open-cache open-cache 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/atolat/open-cache:latestd6105dd73eb4
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

448
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,807
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,758
jobopen-charts2.0.01 of 1See more

job open-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1

Open the chart page →

761
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

11,210
opencost-lensopencost-lens1.0.01 of 2See more

opencost-lens opencost-lens 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,114
everest-db-namespaceopeneverestVerified publisher1.16.21 of 1See more

everest-db-namespace openeverest 1.16.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
percona/everest-helmtools:0.0.1904458d04a18
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

769
cron-connectoropenfaas0.6.161 of 1See more

cron-connector openfaas 0.6.16

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

887
gcp-pubsub-connectoropenfaas0.0.11 of 1See more

gcp-pubsub-connector openfaas 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/gcp-pubsub-connector:0.0.18df071f5b719
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,163
kafka-connectoropenfaas0.7.151 of 1See more

kafka-connector openfaas 0.7.15

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/kafka-connector:0.7.160e58eac0e2f7
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,165
postgres-connectoropenfaas0.1.21 of 1See more

postgres-connector openfaas 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,217
pro-builderopenfaas0.6.131 of 2See more

pro-builder openfaas 0.6.13

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,756
rabbitmq-connectoropenfaas0.0.41 of 1See more

rabbitmq-connector openfaas 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,037
sqs-connectoropenfaas0.2.71 of 1See more

sqs-connector openfaas 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

913
kruise-gameopenkruise1.1.01 of 1See more

kruise-game openkruise 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
openkruise/kruise-game-manager:v1.1.0d3c6d69d2c39
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

934
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,418
openlit-operatoropenlit0.2.21 of 1See more

openlit-operator openlit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

862
openobserveopenobserve1.0.11 of 6See more

openobserve openobserve 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
natsio/nats-server-config-reloader:0.23.064cb6c858e79
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

3,083
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/redis:7.2.5-alpine6aaf3f5e6bc8
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

3,486
llm-stackopenproject-helm-chartsVerified publisher1.1.02 of 2See more

llm-stack openproject-helm-charts 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/python:3.12-slim78387bc3881b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,048
fineractopenshift0.1.13 of 4See more

fineract openshift 0.1.1

3 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
zlib@1.3.1-r1
1.3.2-r0
library/mariadb:11.4611a2fcc5fa7
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,978
sohaopensohaVerified publisher0.1.91 of 2See more

soha opensoha 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,831
terminalsopen-webui0.7.02 of 2See more

terminals open-webui 0.7.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/open-webui/terminals:latest5d2fd44366a4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,110
operatonoperatonVerified publisher1.0.51 of 1See more

operaton operaton 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
operaton/operaton:1.0.0-beta-4b35867ffe4d8
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,125
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
replicated/replicated-sdk:1.0.0-beta.318751b4963250
zlib@1.3.1-r4
1.3.2-r0

Open the chart page →

5,661
hiveopstty0.1.92 of 4See more

hive opstty 0.1.9

2 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
alpine/curl:8.12.08943e8c7e8e4
zlib@1.3.1-r2
1.3.2-r0
bitnamilegacy/postgresql:16233f361c5819
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,748
example-idpory0.64.01 of 1See more

example-idp ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
oryd/hydra-login-consent-node:v26.2.06465e95993b5
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

988
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

11,074
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.029 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

29 of the 40 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
zlib@1:1.2.13.dfsg-1
no fix listed
chromadb/chroma:1.5.7fc8dc8e11fb2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/postgres:17.5-alpine6567bca8d7bc
zlib@1.3.1-r2
1.3.2-r0
library/postgres:17.2-alpine7e5df973a748
zlib@1.3.1-r2
1.3.2-r0
library/redis:7.4.2-alpine02419de7eddf
zlib@1.3.1-r2
1.3.2-r0
yetiplatform/bloomcheck:dev85683ddfccbb
zlib@1.3.1-r2
1.3.2-r0
yetiplatform/yeti:2.9.09bcbe2650a14
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
yetiplatform/yeti-frontend:2.9.0873ef15d267b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-server:latestce1132261523
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

203,579
yetiosdfir-infrastructureVerified publisher1.0.52 of 4See more

yeti osdfir-infrastructure 1.0.5

2 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
yetiplatform/yeti:latest9c3006cedcca
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
yetiplatform/yeti-frontend:latest709064278c7e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

6,874
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

929
loki-standaloneot-container-kit1.0.22 of 5See more

loki-standalone ot-container-kit 1.0.2

2 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,667
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

5,428
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,507
webot-container-kit0.1.01 of 1See more

web ot-container-kit 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,956
workerot-container-kit0.1.01 of 1See more

worker ot-container-kit 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,956
outscale-s3-exploreroutscale-s3-explorer0.1.41 of 1See more

outscale-s3-explorer outscale-s3-explorer 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,818
lens-metric-proxyowan-charts0.1.01 of 1See more

lens-metric-proxy owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,956
avap2p-avs0.1.01 of 1See more

ava p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
avaprotocol/ap-avs:1.2.0c430ea5c37d6
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,362
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

12,572
ungatep2p-avs0.1.02 of 3See more

ungate p2p-avs 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
zlib@1:1.2.13.dfsg-1
no fix listed
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

27,901
parcaparca-rr0.1.01 of 2See more

parca parca-rr 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.24.23776500fde82
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,405
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
esteban1930/frontend-1:1.8.0f9078279632c
zlib@1.3.1-r2
1.3.2-r0
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

3,887
istio-cniparticuleio1.1.01 of 1See more

istio-cni particuleio 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gcr.io/istio-testing/install-cni:latestec6f9ea5757b
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

884
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

4,196
clickhousepascaliskeVerified publisher1.0.01 of 1See more

clickhouse pascaliske 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.12.6.70-alpinecd450891db46
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

491
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,071
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,427
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

4,878
linkdingpascaliskeVerified publisher3.0.01 of 1See more

linkding pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,921

Container images carrying it

2,670 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/getsentry/relay:26.7.2cd29b88c1d72
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/getsentry/snuba:26.7.210f8d164109b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/glauth/glauth:v2.5.209c782ca5984
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/goauthentik/server:2026.8.3ab9b4e8cc4ab
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/gochain/rpc-proxy/rpc-proxy:latestca01f5ab95f7
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/grycap/im:latest06a16d4f279f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/helm/chartmuseum:v0.16.3c81f105c3682
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/hemslo/chat-search:latest39d48995a5bd
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/hiteshnayak305/cors-proxy:1.2.0e6ff0a131556
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/home-operations/prowlarr:2.3.01a8a4b11972b
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/icoretech/codex-pooler:0.8.054609b857b47
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/imcitius/checker-edge:1.1.1174426c1fe00f
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
zlib@1:1.2.13.dfsg-1
no fix listed
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.