StackRadar

CVE-2026-27171

Medium

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,453
of 17,803 indexed, latest versions
Container images
2,605
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-27171 affecting package zlib for versions less than 1.3.2-1

Carried by container images the latest versions of 2,453 of 17,803 indexed charts deploy, on 2,605 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.13.dfsg-1, 1:1.3.dfsg-3.1ubuntu2, 1:1.3.dfsg-3.1ubuntu2.1, 1:1.3.dfsg+really1.3.1-1+b1+5 more1:1.3.dfsg-3.1ubuntu2.2, 1:1.3.dfsg+really1.3.1-1+e1, 1:1.3.dfsg+really1.3.1-1ubuntu3.11,699
zlibapk1.3-r2, 1.3.1-r1, 1.3.1-r2, 1.3.1-r4+3 more1.3.2-r0900
zlibrpm1.2.11-lp151.5.3.1, 1.2.13-150500.4.3.1, 1.3.1-1.azl31.2.13-150500.4.6.1, 1.3.1-2.1, 1.3.2-16
OSV records
ALPINE-CVE-2026-27171DEBIAN-CVE-2026-27171CGA-x526-fwrp-6v3cUBUNTU-CVE-2026-27171AZL-77886ECHO-e10b-f259-a98bopenSUSE-SU-2026:10617-1SUSE-SU-2026:0783-1
Also known as
CGA-xjhg-6p5p-42rc, USN-8706-1

Charts affected

2,453 by stars
ChartLatestAffected imagesRadar Score
payment-gatewaylabs64io-helm-chartsVerified publisher0.10.02 of 2See more

payment-gateway labs64io-helm-charts 0.10.0

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
labs64/payment-gateway:0.0.10c66feefca17
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1
library/postgres:184ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,778
lagoon-remotelagoon-chartsVerified publisher0.106.01 of 1See more

lagoon-remote lagoon-charts 0.106.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,279
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,028
bitwarden-crd-operatorlerentisVerified publisher0.18.01 of 1See more

bitwarden-crd-operator lerentis 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,008
lgtm-stacklgtm-stackVerified publisher0.1.31 of 8See more

lgtm-stack lgtm-stack 0.1.3

1 of the 8 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.10f4434c92b3e
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

5,912
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

35,536
litellmlitellm-helm0.2.01 of 1See more

litellm litellm-helm 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
zlib@1.3.1-r51
1.3.2-r0

Open the chart page →

4,503
halitesql0.1.51 of 2See more

ha litesql 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/litesql/ha:latest4029479b8ea7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,154
litlyxlitlyx0.2.04 of 5See more

litlyx litlyx 0.2.0

4 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
litlyx/litlyx-consumer:latest02225e77d316
zlib@1.3.1-r2
1.3.2-r0
litlyx/litlyx-dashboard:lateste64ff2d52385
zlib@1.3.1-r2
1.3.2-r0
litlyx/litlyx-producer:latest10407f36613f
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

8,094
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

7,278
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,800
plexluiscajl1.0.11 of 2See more

plex luiscajl 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1

Open the chart page →

868
dnsbl-exporterluzillaVerified publisher0.5.01 of 2See more

dnsbl-exporter luzilla 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/luzilla/unbound:v0.12.04fd8da9dc13c
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,149
actualbudgetm0nsterrr-actualbudgetVerified publisher2.10.01 of 1See more

actualbudget m0nsterrr-actualbudget 2.10.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,139
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,613
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,795
redismagefleet-redis0.1.01 of 1See more

redis magefleet-redis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/redis:7.274566c6910d1
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,097
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
library/redis:7.274566c6910d1
zlib@1:1.2.13.dfsg-1
no fix listed
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
zlib@1.2.13-150500.4.3.1
1.2.13-150500.4.6.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
zlib@1.2.13-150500.4.3.1
1.2.13-150500.4.6.1
longhornio/longhorn-ui:v1.10.0e60f36161511
zlib@1.2.13-150500.4.3.1
1.2.13-150500.4.6.1

Open the chart page →

13,732
plane-enterprisemakeplaneOfficialVerified publisher3.7.23 of 13See more

plane-enterprise makeplane 3.7.2

3 of the 13 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:15.7-alpine468d34fefd63
zlib@1.3.1-r1
1.3.2-r0
library/rabbitmq:3.13.6-management-alpine611107e29cce
zlib@1.3.1-r1
1.3.2-r0
valkey/valkey:7.2.11-alpine10328d00120d
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

5,090
mcpmcp-chartsVerified publisher0.0.233 of 7See more

mcp mcp-charts 0.0.23

3 of the 7 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1

Open the chart page →

7,095
jellyfinmedia-servarrVerified publisher0.17.11 of 2See more

jellyfin media-servarr 0.17.1

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,658
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

4,238
mimir-syncmimir-sync3.1.01 of 1See more

mimir-sync mimir-sync 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

1,303
miniapiminiapi1.3.21 of 1See more

miniapi miniapi 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
udhos/miniapi:1.3.28a7042db82ce
zlib@1.3.1-r1
1.3.2-r0

Open the chart page →

854
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
zlib@1:1.3.dfsg+really1.3.1-1ubuntu2
no fix listed

Open the chart page →

35,111
mockservermockserverOfficialVerified publisher8.0.01 of 1See more

mockserver mockserver 8.0.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
mockserver/mockserver:mockserver-8.0.0b8426e0b3c80
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,065
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,736
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

13,844
anki-servermt1905022.2.01 of 1See more

anki-server mt190502 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/mt190502/docker-anki-sync-server:25.09.2824245fd5a57
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

526
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/redmine:6.1.204ac44a2595b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,655
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,926
surveyornatsVerified publisher0.20.91 of 1See more

surveyor nats 0.20.9

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
natsio/nats-surveyor:0.9.9104a3e938b23
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

909
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,686
clowder2ncsaVerified publisher1.9.76 of 12See more

clowder2 ncsa 1.9.7

6 of the 12 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-frontend:2.0.0-beta.4fe97882672ca
zlib@1.3.1-r2
1.3.2-r0
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

37,794
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

14,424
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.33 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

3 of the 5 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nats:2.11.9-alpine777787bbb4c7
zlib@1.3.1-r2
1.3.2-r0
natsio/nats-box:0.18.0abdc9f9f0120
zlib@1.3.1-r2
1.3.2-r0
natsio/nats-server-config-reloader:0.19.181edf32a3680
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

6,136
oadaoadaVerified publisher5.0.610 of 11See more

oada oada 5.0.6

10 of the 11 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
oada/auth:4.0.0c0d077e79ef4
zlib@1.3.1-r2
1.3.2-r0
oada/http-handler:4.0.0d87efe8ba4b0
zlib@1.3.1-r2
1.3.2-r0
oada/rev-graph-update:4.0.0ebc8343f05ff
zlib@1.3.1-r2
1.3.2-r0
oada/shares:4.0.0c6ffb4e8ed63
zlib@1.3.1-r2
1.3.2-r0
oada/startup:4.0.0fc09495e2f3c
zlib@1.3.1-r2
1.3.2-r0
oada/sync-handler:4.0.0b7a2cfc137cf
zlib@1.3.1-r2
1.3.2-r0
oada/users:4.0.0b6c562fa5b1b
zlib@1.3.1-r2
1.3.2-r0
oada/webhooks:4.0.06590c60de347
zlib@1.3.1-r2
1.3.2-r0
oada/well-known:4.0.07943fde43b19
zlib@1.3.1-r2
1.3.2-r0
oada/write-handler:4.0.08464c7f48aae
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

13,349
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,385
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,037
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

14,835
openrouter-botopenrouter-botVerified publisher0.2.01 of 1See more

openrouter-bot openrouter-bot 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
lifailon/openrouter-bot:latestea37e4b6b952
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

1,060
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,898
opentelemetry-demoopentelemetry-helmOfficialVerified publisher0.41.210 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

10 of the 34 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-shipping02602e60edbf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-fraud-detection1cdfd1bcf476
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/open-telemetry/demo:3.0.0-frontend9505e349e140
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2

Open the chart page →

23,436
openvaultopenvaultVerified publisher0.8.12 of 2See more

openvault openvault 0.8.1

2 of the 2 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
zlib@1.3.1-r2
1.3.2-r0
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,991
opikopikOfficialVerified publisher2.2.683 of 13See more

opik opik 2.2.68

3 of the 13 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.0862d86046bbc
zlib@1.3.1-r2
1.3.2-r0
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
zlib@1.3.1-r2
1.3.2-r0
curlimages/curl:8.12.194e9e444bcba
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

14,882
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-27171.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
zlib@1.3.1-r2
1.3.2-r0

Open the chart page →

2,585

Container images carrying it

2,605 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/mittwald/kube-httpcache:stable2169032c5840
zlib@1:1.2.13.dfsg-1
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
zlib@1:1.2.13.dfsg-1
no fix listed
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/opsmxpublic/opa:opa-sidecar-v1.03dcbf3caa454
zlib@1.3.1-r2
1.3.2-r0
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/opstree/grafana:12.4.3b61c1ed2f015
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
zlib@1.3.1-r51
1.3.2-r0
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
zlib@1.3.1-r51
1.3.2-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
zlib@1.3.1-r51
1.3.2-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
zlib@1.3.1-r51
1.3.2-r0
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1
1
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
zlib@1.3.1-r2
1.3.2-r0
1
quay.io/reactiveops/rbac-manager:v1.9.587e3f461446f
zlib@1.3.1-r2
1.3.2-r0
1
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
zlib@1.3.1-r1
1.3.2-r0
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
zlib@1:1.2.13.dfsg-1
no fix listed
1
quay.io/shivering-isles/dovecot:2.3.214599ada9aa06
zlib@1.3.1-r1
1.3.2-r0
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
zlib@1.3.1-r2
1.3.2-r0
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
zlib@1:1.2.13.dfsg-1
no fix listed
1
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
zlib@1.3.1-r2
1.3.2-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
zlib@1:1.3.dfsg-3.1ubuntu2.1
1:1.3.dfsg-3.1ubuntu2.2
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/dyff/dyff-frontend:0.20.2481be0beaafe
zlib@1.3.1-r2
1.3.2-r0
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
1:1.3.dfsg+really1.3.1-1ubuntu3.1
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
zlib@1.3.1-r2
1.3.2-r0
1
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
zlib@1.3.1-r2
1.3.2-r0
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
zlib@1.3.1-r2
1.3.2-r0
1
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
zlib@1.3.1-r2
1.3.2-r0
1
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
zlib@1.3.1-r1
1.3.2-r0
1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
zlib@1.3.1-r2
1.3.2-r0
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
zlib@1:1.2.13.dfsg-1
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.