StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,439
of 17,803 indexed, latest versions
Container images
2,579
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,439 of 17,803 indexed charts deploy, on 2,579 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,675
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0898
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,439 by stars
ChartLatestAffected imagesRadar Score
argocdargo-helm-charts1.0.03 of 3See more

argocd argo-helm-charts 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
zlib@1.3.1-r2
1.3.2-r0
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
zlib@1.3.1-r2
1.3.2-r0
quay.io/argoproj/argocd:v2.14.115fc69e31c755
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

7,369
arlas-aiasarlas-stackVerified publisher28.8.012 of 22See more

arlas-aias arlas-stack 28.8.0

12 of the 22 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
zlib@1:1.2.13.dfsg-1
no fix listed
gisaia/arlas-permissions-server:28.0.0e612fc722e02
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
gisaia/arlas-persistence-server:28.0.0f667e0ee79be
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
gisaia/arlas-server:28.0.04e693e7b6f37
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

40,651
arlas-servicesarlas-stackVerified publisher28.8.03 of 3See more

arlas-services arlas-stack 28.8.0

3 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
gisaia/arlas-permissions-server:28.0.0e612fc722e02
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
gisaia/arlas-persistence-server:28.0.0f667e0ee79be
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
gisaia/arlas-server:28.0.04e693e7b6f37
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,603
titilerarlas-stackVerified publisher28.8.01 of 1See more

titiler arlas-stack 28.8.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,467
assemblylineassemblylineVerified publisher7.4.205 of 12See more

assemblyline assemblyline 7.4.20

5 of the 12 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable20098127270065
zlib@1:1.2.13.dfsg-1
no fix listed
cccs/assemblyline-rust:4.7.4.stable202be5e6a57427
zlib@1:1.2.13.dfsg-1
no fix listed
cccs/assemblyline-socketio:4.7.4.stable202b88493b62f7
zlib@1:1.2.13.dfsg-1
no fix listed
cccs/assemblyline-ui:4.7.4.stable20efa75509b854
zlib@1:1.2.13.dfsg-1
no fix listed
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

12,667
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

13,389
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

8,052
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
zlib@1:1.2.13.dfsg-1
no fix listed
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
zlib@1:1.2.13.dfsg-1
no fix listed
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
zlib@1:1.2.13.dfsg-1
no fix listed
devopsfaith/krakend:latestf8bdaa8a1a43
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

45,620
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

14,001
account-monitorastria0.0.11 of 1See more

account-monitor astria 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,960
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

32,664
auctioneerastria0.0.21 of 1See more

auctioneer astria 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,209
celestia-localastria9.0.02 of 2See more

celestia-local astria 9.0.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

3,300
celestia-nodeastria0.7.11 of 1See more

celestia-node astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,513
evm-bridge-withdrawerastria1.0.61 of 1See more

evm-bridge-withdrawer astria 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,184
evm-rollupastria4.1.02 of 2See more

evm-rollup astria 4.1.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,019
evm-stackastria5.0.32 of 2See more

evm-stack astria 5.0.3

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,019
flame-rollupastria0.1.32 of 2See more

flame-rollup astria 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/astriaorg/flame:0.1.0c8af1c5aae40
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

3,717
graph-nodeastria0.2.22 of 3See more

graph-node astria 0.2.2

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
graphprotocol/graph-node:latestb0436347fb24
zlib@1:1.2.13.dfsg-1
no fix listed
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

5,572
hermesastria0.7.11 of 1See more

hermes astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

2,007
sequencerastria4.0.02 of 3See more

sequencer astria 4.0.0

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
cometbft/cometbft:v0.38.1722c2ac018f40
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,344
sequencer-faucetastria0.9.21 of 1See more

sequencer-faucet astria 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/seq-faucet:0.9.0bf3cb9b505b6
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,320
sequencer-relayerastria2.0.01 of 1See more

sequencer-relayer astria 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,960
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,449
auth0-operatorauth0-operator1.4.121 of 1See more

auth0-operator auth0-operator 1.4.12

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/alethic/auth0-operator-image:1.4.122468990a8521
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

748
autopushautopushVerified publisher0.0.493 of 4See more

autopush autopush 0.0.49

3 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2c123e3715db6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/wrenix/autopush-rs/autoconnect:1.84.285f93ced88b2
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/wrenix/autopush-rs/autoendpoint:1.84.2d95e9a124eed
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,016
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,338
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,190
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
zlib@1:1.2.13.dfsg-1
no fix listed
kuzwolka/aws9:news3e8880fbbb96
zlib@1:1.2.13.dfsg-1
no fix listed
kuzwolka/aws9:blog4a7707410bf1
zlib@1:1.2.13.dfsg-1
no fix listed
kuzwolka/aws9:shop84a9d9766345
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

18,508
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,043
azure-voteazure-sample0.1.11 of 2See more

azure-vote azure-sample 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

5,255
ragflowbaboulinet0.1.11 of 5See more

ragflow baboulinet 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
valkey/valkey:83fbd2e3e4b6e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

5,909
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,761
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,338
my-nginx-appbassant-nginx-app0.1.01 of 1See more

my-nginx-app bassant-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,861
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

4,071
qbittorrent-vpnbdclark-helm-chartsVerified publisher0.7.61 of 2See more

qbittorrent-vpn bdclark-helm-charts 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.41.11a5bf4b4820a
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,010
wyoming-piperbdclark-helm-chartsVerified publisher0.1.41 of 1See more

wyoming-piper bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.5.27d39aafac409
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,209
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
fosrl/pangolin:latest83a55f933b4d
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,929
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,138
helm-samplebehnambm-helm-chart1.0.12 of 3See more

helm-sample behnambm-helm-chart 1.0.1

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
behnambm/docker-sample:v1bd3ad88afff9
zlib@1.3.1-r1
1.3.2-r0
library/redis:771da9275c5f3
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,757
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

5,138
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

10,234
bdbablackduck2026.6.36 of 9See more

bdba blackduck 2026.6.3

6 of the 9 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
blackducksoftware/bdba-fluentd:2026.6.3c14bbbf45536
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
blackducksoftware/bdba-frontend:2026.6.3b10eaea94fd3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
fluent/fluent-bit:4.2.6a52221a2a3eb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/memcached:1.6.42-trixiee2a8683c7fbb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/postgres:15.18-bookworme8db9bd3e9e1
zlib@1:1.2.13.dfsg-1
no fix listed
library/rabbitmq:4.2.87561d672fae4
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

9,718
bluespacebluespace0.3.01 of 1See more

bluespace bluespace 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,861
colosseumbook-k8sinfra-v21.0.183 of 5See more

colosseum book-k8sinfra-v2 1.0.18

3 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
zlib@1:1.2.13.dfsg-1
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
zlib@1:1.2.13.dfsg-1
no fix listed
sysnet4admin/colosseum-rwd:log74ded2d92f07
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

27,239
csi-driver-nfsbook-k8sinfra-v24.12.11 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

1 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,269
grafanabook-k8sinfra-v28.8.21 of 1See more

grafana book-k8sinfra-v2 8.8.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/grafana:11.4.0d8ea37798ccc
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,813
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

8,346
kube-prometheus-stackbook-k8sinfra-v265.5.12 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

2 of the 6 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/grafana:11.2.2-security-01464eac539793
zlib@1.3.1-r1
1.3.2-r0
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

6,049

Container images carrying it

2,579 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/schaka/janitorr:native-stable7cfe1e0c41da
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/sct/overseerr:1.35.06197516c9d7b
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/sdr-enthusiasts/docker-flightradar24:latest917e53402d51
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/seerr-team/seerr:v3.2.0c4cbd5121236
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sergelogvinov/fluentd:1.19.33273d13f1e75
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sergelogvinov/proxmox-csi-node:v0.20.0e0151137a1c5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/sergelogvinov/tabix:22.05.17a6e3e996a4ae
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/shadrus/srebot:0.14.09b4415e937b2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/shizunge/endlessh-go:2026.0730.08826dad32623
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sredevopsorg/ghost-on-kubernetes:maindd991bafa85e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/steadybit/agent:2.4.52bc7b260e44e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
zlib@1.3-r2
1.3.2-r0
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/strrl/wonder-mesh-net:v2026.629.0625b140372fd
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
ghcr.io/szpadel/languagetool-server:6.568fdab22b2a9
zlib@1.3.1-r1
1.3.2-r0
1
ghcr.io/tale/headplane:0.5.50dbc52cffc19
zlib@1.3.1-r2
1.3.2-r0
1
ghcr.io/tarampampam/video-dl-bot:1.4.36daa2dc7556b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.