StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,453
of 17,803 indexed, latest versions
Container images
2,605
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,453 of 17,803 indexed charts deploy, on 2,605 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,699
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0900
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,453 by stars
ChartLatestAffected imagesRadar Score
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

13,157
sdtdgeek-cookbookVerified publisher0.3.21 of 1See more

sdtd geek-cookbook 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/reitermarkus/7d2d:main39953b387b61
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,552
skypilotgeek-cookbookVerified publisher0.0.12 of 3See more

skypilot geek-cookbook 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

9,065
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,758
cloudflare-tunnelgeneral-helm-chartsVerified publisher0.2.01 of 1See more

cloudflare-tunnel general-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
cloudflare/cloudflared:latest51c9cefcb456
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

570
dispatchoor-apigeneral-helm-chartsVerified publisher0.1.11 of 1See more

dispatchoor-api general-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-api:latesta0b272f6682a
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

779
dispatchoor-uigeneral-helm-chartsVerified publisher0.1.01 of 1See more

dispatchoor-ui general-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,335
redisgengxiankun-charts0.2.01 of 1See more

redis gengxiankun-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,004
rocketmqgengxiankun-charts0.3.01 of 1See more

rocketmq gengxiankun-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
apache/rocketmq:5.3.0434d8398f996
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

4,970
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,715
ghostghostVerified publisher0.1.02 of 4See more

ghost ghost 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
cloudflare/cloudflared:latest51c9cefcb456
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/ghost:5.79.083f7bf209844
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,136
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,022
redis-uigin0.0.11 of 1See more

redis-ui gin 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
patrikx3/p3x-redis-ui:latestf19eb45b0694
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,101
rabbitmqginger-society0.1.01 of 2See more

rabbitmq ginger-society 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/rabbitmq:4-managementffd1b50c522a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

1,529
glassflow-etlglassflowVerified publisher0.5.215 of 16See more

glassflow-etl glassflow 0.5.21

5 of the 16 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nats:2.12.3-alpine88fe8e0e09d6
zlib@1.3.1-r2
1.3.2-r0
natsio/nats-box:0.19.28031d190c7ee
zlib@1.3.1-r2
1.3.2-r0
natsio/nats-server-config-reloader:0.21.110ff229eaf52
zlib@1.3.1-r2
1.3.2-r0
natsio/prometheus-nats-exporter:0.17.326c826662ac8
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

12,422
pgbouncerglassflowVerified publisher0.1.01 of 1See more

pgbouncer glassflow 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
bitnamilegacy/pgbouncer:1.23.192356da09704
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,317
glauthglauthVerified publisher0.3.171 of 2See more

glauth glauth 0.3.17

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
nouchka/sqlite3:latestd183308f201c
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,682
kube-hookglenndehaanVerified publisher1.0.31 of 1See more

kube-hook glenndehaan 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
glenndehaan/kube-hook:latest0a7116f48bfe
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

925
glpiglpi-chart0.1.13 of 3See more

glpi glpi-chart 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/phpmyadmin:latest3a8a8d6b5289
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

12,444
gnp-stackgnp-stack0.0.54 of 14See more

gnp-stack gnp-stack 0.0.5

4 of the 14 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/grafana:12.2.135c41e0fd029
zlib@1.3.1-r2
1.3.2-r0
rancher/local-path-provisioner:v0.0.329289da488b07
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/openconfig/gnmic:0.45.0d422a9ebd4a2
zlib@1.3.1-r2
1.3.2-r0
quay.io/kiwigrid/k8s-sidecar:1.30.10835d79d8fbae
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

7,720
go-file-servergo-file-server1.0.02 of 2See more

go-file-server go-file-server 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
goccx/go-file-server:latestf4b3ebea0303
zlib@1.3.1-r1
1.3.2-r0
goccx/go-file-server-ui:latest784b35910d52
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

2,222
goofy-chartgoofy-chart0.1.01 of 1See more

goofy-chart goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
platformgoofy-chart0.1.01 of 1See more

platform goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
devopsgoofy/k8s-platform:latestad865312099f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,832
googly-logingoogly-login0.1.01 of 2See more

googly-login googly-login 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,686
Governify-Bluejaygovernify0.1.02 of 12See more

Governify-Bluejay governify 0.1.0

2 of the 12 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

22,704
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

24,493
kube-prometheus-stackgpg-dev84.0.02 of 6See more

kube-prometheus-stack gpg-dev 84.0.0

2 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/grafana:13.0.10f86bada30d6
zlib@1.3.1-r2
1.3.2-r0
quay.io/kiwigrid/k8s-sidecar:2.6.0a6c101156d42
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

4,330
openclawgpg-dev1.5.361 of 2See more

openclaw gpg-dev 1.5.36

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,684
opentelemetry-demogpg-dev0.33.815 of 27See more

opentelemetry-demo gpg-dev 0.33.8

15 of the 27 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/grafana:11.3.1fa801ab6e1ae
zlib@1.3.1-r1
1.3.2-r0
ghcr.io/open-telemetry/demo:1.12.0-productcatalogservice008b9b662289
zlib@1.3.1-r1
1.3.2-r0
ghcr.io/open-telemetry/demo:1.12.0-checkoutservice380eccdc29e9
zlib@1.3.1-r1
1.3.2-r0
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-cartservice89730afa0b5d
zlib@1.3.1-r1
1.3.2-r0
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
zlib@1.3.1-r1
1.3.2-r0
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
zlib@1.3.1-r1
1.3.2-r0
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

49,771
video-analytics-demogpu-operator0.1.91 of 3See more

video-analytics-demo gpu-operator 0.1.9

1 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

15,853
video-analytics-demo-l4tgpu-operator0.1.31 of 3See more

video-analytics-demo-l4t gpu-operator 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
grafana-cloud-onboardinggrafana0.4.71 of 5See more

grafana-cloud-onboarding grafana 0.4.7

1 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

4,736
grafana-samplinggrafana1.1.71 of 2See more

grafana-sampling grafana 1.1.7

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

3,403
pyroscope-monitoringgrafana0.1.11 of 6See more

pyroscope-monitoring grafana 0.1.1

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

8,488
grafana-dashboard-convertergrafana-dashboard-converterVerified publisher0.3.101 of 1See more

grafana-dashboard-converter grafana-dashboard-converter 0.3.10

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
kenchrcum/grafana-dashboard-converter:0.3.105310497aea3f
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

909
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

78,760
grayloggraylogVerified publisher1.0.21 of 4See more

graylog graylog 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:85211c51171f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

5,389
armada-executorgresearch0.22.81 of 1See more

armada-executor gresearch 0.22.8

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gresearch/armada-executor:latest393aff4aa8f2
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

868
armada-lookout-ingestergresearch0.22.81 of 1See more

armada-lookout-ingester gresearch 0.22.8

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gresearch/armada-lookout-ingester:latest3df14cda1855
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

868
armada-lookout-migrationgresearch0.22.81 of 1See more

armada-lookout-migration gresearch 0.22.8

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gresearch/armada-lookout:latestf5e3226f1d33
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

868
armada-scheduler-migrationgresearch0.22.81 of 1See more

armada-scheduler-migration gresearch 0.22.8

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gresearch/armada-scheduler:latest6141a6213fcb
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

868
cc-spring-appgridgainVerified publisher1.0.61 of 1See more

cc-spring-app gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gridgain/cloud-connector:2025.5.15ab838d7d3cb
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,692
gridgain9gridgainVerified publisher1.1.102 of 2See more

gridgain9 gridgain 1.1.10

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gridgain/gridgain9:9.1.1895018390077b
zlib@1.3.1-r2
1.3.2-r0
library/debian:12.12-slimd5d3f9c23164
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,247
act-runnergringolitoVerified publisher0.2.01 of 1See more

act-runner gringolito 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gitea/act_runner:0.2.11-dind-rootless6120b1165f3a
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

2,608
routergroundcover1.12.3752 of 7See more

router groundcover 1.12.375

2 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/kong/kubernetes-ingress-controller:3.5.3-20260205bf9db911deed
zlib@1:1.3.dfsg+really1.3.1-1+b1
1:1.3.dfsg+really1.3.1-1+e1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
zlib@1:1.3.dfsg+really1.3.1-1+b1
1:1.3.dfsg+really1.3.1-1+e1

Open the chart page →

6,154
gtmgtmVerified publisher1.0.21 of 1See more

gtm gtm 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gcr.io/cloud-tagging-10302018/gtm-cloud-image:stable688d35c6c544
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

500
gwangju_2-3gwangju2-30.1.04 of 5See more

gwangju_2-3 gwangju2-3 0.1.0

4 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
clsen2024/gwangju_2-3:service-b-10ba9eff852c5
zlib@1.3.1-r1
1.3.2-r0
clsen2024/gwangju_2-3:service-a-151b1d45961cd
zlib@1.3.1-r1
1.3.2-r0
clsen2024/gwangju_2-3:service-c-1efb1586c8299
zlib@1.3.1-r1
1.3.2-r0
fluent/fluent-bit:latestd792375ca8e5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

6,513
librechathajowielandVerified publisher1.1.01 of 1See more

librechat hajowieland 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

3,108
librechat-exporterhajowielandVerified publisher1.0.01 of 1See more

librechat-exporter hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,327
minifluxhajowielandVerified publisher1.0.01 of 1See more

miniflux hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/miniflux/miniflux:2.2.83a11ac10969e
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,257

Container images carrying it

2,605 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/matter-js/matterjs-server:1.4.054232d0d3e7d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mattn/picoclaw:latest517556c8b144
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/mcp-hangar/mcp-hangar:2.21.0ee409f91176c
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/microboxlabs/miot-harness:0.1.0d548e9ae4b84
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/middleware-labs/mw-lang-aggregator:0.1.0ae6e13970ec2
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/miniflux/miniflux:2.2.83a11ac10969e
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/miniflux/miniflux:2.2.5bacc9b78ec61
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/mollyim/mollysocket:1.7.1c675622546a4
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/mondu-ai/gar-credential-provider:latest25090d37afa9
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/monicahq/monica-next:main8be69156acbb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mskazemi/kubeintellect:2.5.0b5d7681d1b9d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/mt190502/docker-anki-sync-server:25.09.2824245fd5a57
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/music-assistant/server:2.10.3885872224fa5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
zlib@1:1.3.dfsg-3.1ubuntu2
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/nerdswords/yet-another-cloudwatch-exporter:v0.61.2f04925fe1fa6
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/nmshd/backbone-admin-cli:7.2.1f7d095c04a75
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/nmshd/backbone-admin-ui:7.2.169c9f075d2d9
zlib@1:1.3.dfsg+really1.3.1-1+dhi2
no fix listed
1
ghcr.io/nmshd/backbone-consumer-api:7.2.1b8f0ce01d057
zlib@1:1.3.dfsg+really1.3.1-1+dhi2
no fix listed
1
ghcr.io/nmshd/backbone-database-migrator:7.2.12c0c5e022714
zlib@1:1.3.dfsg+really1.3.1-1+dhi2
no fix listed
1
ghcr.io/nmshd/backbone-event-handler:7.2.1f4d6a2006530
zlib@1:1.3.dfsg+really1.3.1-1+dhi2
no fix listed
1
ghcr.io/nmshd/backbone-housekeeper:7.2.11c1dfe35447f
zlib@1:1.3.dfsg+really1.3.1-1+dhi2
no fix listed
1
ghcr.io/nmshd/backbone-identity-deletion-jobs:7.2.1da69941fa6b8
zlib@1:1.3.dfsg+really1.3.1-1+dhi2
no fix listed
1
ghcr.io/nmshd/connector:7.4.122f1c515eafa9
zlib@1:1.3.dfsg+really1.3.1-1+dhi3
no fix listed
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/nowakeai/svc-lb-mux:0.1.37d8fb8e996b6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.