StackRadar

CVE-2026-85091

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.3
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,605
of 17,790 indexed, latest versions
Container images
2,614
deployed by those charts
Fix available
2 of 5
affected packages

CVE-2026-85091 affecting package zlib 1.3.2-1

Carried by container images the latest versions of 2,605 of 17,790 indexed charts deploy, on 2,614 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.8.dfsg-1ubuntu1, 1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1+22 more1:1.3.dfsg+really1.3.1-1+e22,519
zlibapk1.3-r2, 1.3.1-r4, 1.3.1-r5, 1.3.1-r6+6 more1.3.3-r094
rsyncdeb3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2, 3.1.1-3ubuntu1.3, 3.1.2-2.1ubuntu1+8 moreno fix listed29
klibcdeb2.0.3-0ubuntu1, 2.0.3-0ubuntu1.14.04.3no fix listed7
zlibrpm1.3.1-1.azl3no fix listed1
OSV records
CGA-64hx-6x96-r8f7CGA-6ph6-75jp-484pDEBIAN-CVE-2026-85091UBUNTU-CVE-2026-85091AZL-99090ECHO-2e36-531c-37dd
Also known as
CGA-7955-fhww-9pv3, CGA-m46g-37hm-gpgh
Trending
Rank 21 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

2,605 by stars
ChartLatestAffected imagesRadar Score
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

5,293
oneuptimeoneuptimeOfficialVerified publisher13.0.54 of 7See more

oneuptime oneuptime 13.0.5

4 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.73b94aa2f02cd
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
oneuptime/probe:release1069c9458fe7
zlib@1:1.2.13.dfsg-1
no fix listed
oneuptime/runner:releasef6f2c1c536bc
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

11,432
openclawopenclaw-helmVerified publisher1.5.402 of 2See more

openclaw openclaw-helm 1.5.40

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,710
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
zlib@1:1.3.dfsg-3.1ubuntu2
no fix listed

Open the chart page →

3,428
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,425
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
rsync@3.1.2-2.1ubuntu1.1
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed
no fix listed

Open the chart page →

15,602
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

7,920
camel-kcamel-kVerified publisher2.11.01 of 1See more

camel-k camel-k 2.11.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/camel-k:2.11.0d173e7efe258
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,293
glasskube-operatorglasskubeOfficialVerified publisher0.12.21 of 3See more

glasskube-operator glasskube 0.12.2

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

11,987
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,375
milvusmilvus-helm5.0.282 of 4See more

milvus milvus-helm 5.0.28

2 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
milvusdb/etcd:3.5.25-r1fededb2f2d63
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

10,782
prefect-serverprefectVerified publisher2026.9.141419102 of 2See more

prefect-server prefect 2026.9.14141910

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
zlib@1:1.2.13.dfsg-1
no fix listed
prefecthq/prefect:3.8.6-python3.11f518ebb9c353
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

5,556
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

6,400
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

18,589
bitbucketatlassian-data-centerVerified publisher2.0.151 of 1See more

bitbucket atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
atlassian/bitbucket:10.2.705933f2b1cfd
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

1,520
zookeepercloudpirates-zookeeperVerified publisher0.13.111 of 1See more

zookeeper cloudpirates-zookeeper 0.13.11

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5cab8944a33a1
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

2,966
codefreshcodefresh-onpremOfficialVerified publisher2.12.144 of 42See more

codefresh codefresh-onprem 2.12.14

4 of the 42 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
zlib@1:1.2.13.dfsg-1
no fix listed
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

15,093
contourcontour0.8.01 of 2See more

contour contour 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.38.4447f857a0146
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

1,524
apim3graviteeioVerified publisher4.12.192 of 4See more

apim3 graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

4,852
redisgroundhog2k2.4.71 of 1See more

redis groundhog2k 2.4.7

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

978
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,752
memcachedkubelauncherVerified publisher0.1.321 of 1See more

memcached kubelauncher 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/memcacheddigest-pinnedb599ca6b3ff3
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

640
mysqlkubelauncherVerified publisher0.4.41 of 1See more

mysql kubelauncher 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mysqldigest-pinnede9609bd50416
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

982
postgresqlkubelauncherVerified publisher0.4.31 of 1See more

postgresql kubelauncher 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/postgresqldigest-pinned1a27e11e5925
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,159
memgraphmemgraphVerified publisher1.0.71 of 2See more

memgraph memgraph 1.0.7

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.1bd3fe13228f4
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

1,214
velero-uiotwldVerified publisher0.15.01 of 1See more

velero-ui otwld 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
otwld/velero-ui:0.10.2d1954b759e47
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,354
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
rsync@3.1.3-8ubuntu0.7
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
no fix listed
stackstorm/st2api:3.86f56d239d280
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2auth:3.833ecfda16608
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2notifier:3.8f190a6212195
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2web:3.809989a26c8b7
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

96,933
supabasetokens-studioVerified publisher1.0.06 of 14See more

supabase tokens-studio 1.0.0

6 of the 14 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
library/kong:3.8.0712e407b20ea
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
supabase/edge-runtime:v1.59.0eff9c554d649
zlib@1:1.2.13.dfsg-1
no fix listed
supabase/postgres-meta:v0.84.2d0a96973e9f1
zlib@1:1.2.13.dfsg-1
no fix listed
supabase/realtime:v2.33.8d207e6e23ad3
zlib@1:1.2.13.dfsg-1
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

23,365
wekanwekanVerified publisher11.83.02 of 3See more

wekan wekan 11.83.0

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/wekan/ferretdb:latest6cb94aa01999
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/wekan/wekan:v11.83137951e3fb40
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,619
renterdartur9010Verified publisher1.4.42 of 2See more

renterd artur9010 1.4.4

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

8,586
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

1,778
budibasebudibase0.0.0-master3 of 7See more

budibase budibase 0.0.0-master

3 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
zlib@1:1.2.13.dfsg-1
no fix listed
budibase/proxy:3.41.38d780b6ee602
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

10,856
csi-secrets-store-provider-azurecsi-secrets-store-provider-azureVerified publisher1.8.21 of 5See more

csi-secrets-store-provider-azure csi-secrets-store-provider-azure 1.8.2

1 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
zlib@1.3.1-1.azl3
no fix listed

Open the chart page →

2,263
druiddruid-helmVerified publisher37.0.21 of 3See more

druid druid-helm 37.0.2

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/druid:37.0.00116fb802786
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,829
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
zlib@1:1.2.11.dfsg-2ubuntu9.1
no fix listed

Open the chart page →

3,496
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,048
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

7,923
cassandrakubelauncherVerified publisher0.1.271 of 1See more

cassandra kubelauncher 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/cassandradigest-pinnedb66aba320083
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,496
etcdkubelauncherVerified publisher0.4.31 of 1See more

etcd kubelauncher 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/etcddigest-pinned8ab954711fb9
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

818
kafkakubelauncherVerified publisher0.1.261 of 1See more

kafka kubelauncher 0.1.26

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/kafkadigest-pinned43e1085cd0a8
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,404
keycloakkubelauncherVerified publisher0.4.41 of 1See more

keycloak kubelauncher 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/keycloakdigest-pinnedafe3bd73d7cf
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,296
kubectlkubelauncherVerified publisher0.2.111 of 1See more

kubectl kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/kubectldigest-pinned7280594a2f18
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,261
mariadbkubelauncherVerified publisher0.5.71 of 1See more

mariadb kubelauncher 0.5.7

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mariadbdigest-pinnede25056a6ec52
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,107
mongodbkubelauncherVerified publisher0.4.51 of 1See more

mongodb kubelauncher 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mongodbdigest-pinned9bc37ed78a8b
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,386
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

1,284
rabbitmqkubelauncherVerified publisher0.2.111 of 1See more

rabbitmq kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/rabbitmqdigest-pinnedff5a36a457f1
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

1,124
rediskubelauncherVerified publisher0.5.11 of 1See more

redis kubelauncher 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/redisdigest-pinnedbcd8e9a6224f
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

814
zookeeperkubelauncherVerified publisher0.2.111 of 1See more

zookeeper kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/zookeeperdigest-pinned7826e9caa461
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,033
minecraft-proxyminecraft-server-chartsVerified publisher3.10.01 of 1See more

minecraft-proxy minecraft-server-charts 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
itzg/bungeecord:latest1c59f9631f3b
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

3,124
openclawopenclawVerified publisher1.91.31 of 2See more

openclaw openclaw 1.91.3

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

3,093

Container images carrying it

2,614 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
speckle/speckle-server:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb52f8eabf5cea
zlib@1:1.2.13.dfsg-1
no fix listed
1
speckle/speckle-server:2.20.2-branch.testing4.134160-9fad4b2687f43ab16f3
zlib@1:1.2.13.dfsg-1
no fix listed
1
speckle/speckle-server:2.18.12-branch.testing3.88744-f55b34189a5872375f9
zlib@1:1.2.13.dfsg-1
no fix listed
1
speckle/speckle-server:2.18.11-branch.testing2.88634-335d469bf6a501b2210
zlib@1:1.2.13.dfsg-1
no fix listed
1
speckle/speckle-server:2.20.6-branch.testing1.154030-9b09114e8413f57b327
zlib@1:1.2.13.dfsg-1
no fix listed
1
spy86/rabbitmq-stomp:latestea649101b9fb
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
stackstorm/st2actionrunner:3.888235ba70cad
rsync@3.1.3-8ubuntu0.7
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
no fix listed
1
stackstorm/st2api:3.86f56d239d280
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2auth:3.833ecfda16608
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2notifier:3.8f190a6212195
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2rulesengine:3.8259503496ff9
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2scheduler:3.8b1de2055c362
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2stream:3.81c8904a3bf67
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2timersengine:3.81bf35bfaf00c
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2web:3.809989a26c8b7
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stackstorm/st2workflowengine:3.819fdfffdbba8
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
stalwartlabs/stalwart:v0.16.1425001929f36a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
stalwartlabs/stalwart:v0.16.22388dcb75a707
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
stalwartlabs/stalwart:v0.15.5dcf575db2d53
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
stardog/stardog:latest2714e5c4b3c1
zlib@1.3.2-r5
1.3.3-r0
1
stashapp/stash:latest24dbd7607174
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
stashapp/stash-box:latesta534c8afdf39
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
statcan/ckan:2.93921305425b8
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
statusim/nimbus-eth2:multiarch-latest6ccd9d382885
zlib@1:1.2.13.dfsg-1
no fix listed
1
steamcmd/steamcmd:latest5028a25268e7
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
strangebee/thehive:5.8.0-1a7f7b05fba24
zlib@1:1.2.13.dfsg-1
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
substratusai/verba:v0.4.0-baseURL261695be635eb
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/edge-runtime:v1.74.02781daf92394
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/edge-runtime:v1.59.0eff9c554d649
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/logflare:latest49bfe526f1b4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
supabase/postgres-meta:v0.96.6a84cc713585e
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/realtime:v2.102.3aa1c92c0cf32
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/realtime:v2.33.8d207e6e23ad3
zlib@1:1.2.13.dfsg-1
no fix listed
1
supabase/realtime:latestd3aa0c86c7b3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
supabase/studio:20241021-9f9b08326d8070c55e9
zlib@1:1.2.13.dfsg-1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.