CVE-2026-42497
HighAdvisory
Published 26 May 2026In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.004
- 35th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 2,329
- of 17,790 indexed, latest versions
- Container images
- 2,300
- deployed by those charts
- Fix available
- 1 of 1
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 2,329 of 17,790 indexed charts deploy, on 2,300 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| perldeb | 5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+43 more | 5.38.2-3.2ubuntu0.3, 5.40.1-6+deb13u1, 5.40.1-6+e6 | 2,300 |
Charts affected
2,329 by stars
Container images carrying it
2,300 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| citizenstig/ | b81c818ccb86 | perl | no fix listed | 1 |
| ckan/ | 87ecf3f27ad6 | perl | no fix listed | 1 |
| ckan/ | ef8e5d3e6be1 | perl | no fix listed | 1 |
| ckulka/ | 434bdd162247 | perl | no fix listed | 1 |
| clickhouse/ | 1ffa82edee00 | perl | no fix listed | 1 |
| clickhouse/ | 2e6587b81a26 | perl | no fix listed | 1 |
| clickhouse/ | 3b94aa2f02cd | perl | no fix listed | 1 |
| clickhouse/ | 512bb8a21483 | perl | no fix listed | 1 |
| clickhouse/ | 810861a2e2d0 | perl | no fix listed | 1 |
| clickhouse/ | 8745843b17f9 | perl | no fix listed | 1 |
| clickhouse/ | 92098d3b31dd | perl | no fix listed | 1 |
| clickhouse/ | a65ca89ddbe8 | perl | no fix listed | 1 |
| clickhouse/ | b627d7a9bc0e | perl | no fix listed | 1 |
| clickhouse/ | d73903d1b61d | perl | no fix listed | 1 |
| clickhouse/ | dc5658853ce1 | perl | no fix listed | 1 |
| clickhouse/ | e019438e1e05 | perl | no fix listed | 1 |
| clickhouse/ | fa394da808cc | perl | no fix listed | 1 |
| cloudtooling/ | f4f04e0fc401 | perl | no fix listed | 1 |
| cloudve/ | af56e77ca587 | perl | no fix listed | 1 |
| cloudve/ | d79c1c5881c0 | perl | no fix listed | 1 |
| clowder/ | 11f3d844e4c0 | perl | no fix listed | 1 |
| clowder/ | 14155326c7b9 | perl | no fix listed | 1 |
| clowder/ | bf146f1ca24f | perl | no fix listed | 1 |
| cm2network/ | 8cba47f53df5 | perl | 5.40.1-6+deb13u1 | 1 |
| codedesignplus/ | e336012bc781 | perl | no fix listed | 1 |
| codedesignplus/ | ac84661c605e | perl | no fix listed | 1 |
| codedesignplus/ | 360144457f4d | perl | no fix listed | 1 |
| codedesignplus/ | 3f6aaa32d526 | perl | no fix listed | 1 |
| conductoross/ | 9fba127693e6 | perl | 5.40.1-6+deb13u1 | 1 |
| consensys/ | bf6ecd2ea716 | perl | 5.38.2-3.2ubuntu0.3 | 1 |
| consensys/ | f146a51a1ba3 | perl | no fix listed | 1 |
| contentsquareplatform/ | 24555f22d4be | perl | no fix listed | 1 |
| continuoussecuritytooling/ | f04ecefab64e | perl | no fix listed | 1 |
| cortezaproject/ | 0bcdcbcd3c63 | perl | no fix listed | 1 |
| cortezaproject/ | 8eb7a26605c9 | perl | no fix listed | 1 |
| cortezaproject/ | cb9f200de5d2 | perl | no fix listed | 1 |
| cortezaproject/ | 4ea78dfe5364 | perl | no fix listed | 1 |
| coturn/ | f4c2af06c3c5 | perl | 5.40.1-6+deb13u1 | 1 |
| countly/ | e3c238248f99 | perl | no fix listed | 1 |
| cradlepoint/ | 8f5720b0cd03 | perl | no fix listed | 1 |
| cribl/ | 762747cb6796 | perl | no fix listed | 1 |
| csiplugin/ | 1fa83d45417f | perl | no fix listed | 1 |
| cspconsole/ | 5524a26a6c23 | perl | no fix listed | 1 |
| cspconsole/ | 46dda4a31bd6 | perl | no fix listed | 1 |
| cspconsole/ | 39750248193b | perl | no fix listed | 1 |
| cspconsole/ | 9a2d8840bfdf | perl | no fix listed | 1 |
| cubejs/ | 34ac523a9bab | perl | no fix listed | 1 |
| cybrarist/ | e9e2447ac666 | perl | 5.40.1-6+deb13u1 | 1 |
| cyfershepard/ | c4e2dfa8bddf | perl | no fix listed | 1 |
| cyverse/ | aa69d105b292 | perl | no fix listed | 1 |