StackRadar

CVE-2026-85091

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,573
of 17,792 indexed, latest versions
Container images
2,562
deployed by those charts
Fix available
2 of 5
affected packages

CVE-2026-85091 affecting package zlib 1.3.2-1

Carried by container images the latest versions of 2,573 of 17,792 indexed charts deploy, on 2,562 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.8.dfsg-1ubuntu1, 1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1+21 more1:1.3.dfsg+really1.3.1-1+e22,467
zlibapk1.3-r2, 1.3.1-r4, 1.3.1-r5, 1.3.1-r6+6 more1.3.2.1_rc20260601-r0, 1.3.3-r094
rsyncdeb3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2, 3.1.1-3ubuntu1.3, 3.1.2-2.1ubuntu1+8 moreno fix listed29
klibcdeb2.0.3-0ubuntu1, 2.0.3-0ubuntu1.14.04.3no fix listed7
zlibrpm1.3.1-1.azl3no fix listed1
OSV records
CGA-64hx-6x96-r8f7CGA-6ph6-75jp-484pDEBIAN-CVE-2026-85091UBUNTU-CVE-2026-85091AZL-99090ECHO-2e36-531c-37dd
Also known as
CGA-7955-fhww-9pv3, CGA-m46g-37hm-gpgh
Trending
Rank 21 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

2,573 by stars
ChartLatestAffected imagesRadar Score
dbrepodbrepo1.13.315 of 25See more

dbrepo dbrepo 1.13.3

15 of the 25 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/valkey:latest0384ca2eec63
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

53,108
defguarddefguard2.1.01 of 2See more

defguard defguard 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/defguard/defguard:2.1.0df2e31d3b4f5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

829
mealiedeimosfr-charts1.0.151 of 1See more

mealie deimosfr-charts 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

4,059
kubedashdevopstalesOfficialVerified publisher4.0.03 of 8See more

kubedash devopstales 4.0.0

3 of the 8 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/redis:8.6.2009cc37796fb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
patrikx3/p3x-redis-ui:latestf19eb45b0694
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,271
dial-coredialOfficialVerified publisher6.0.01 of 2See more

dial-core dial 6.0.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,543
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed

Open the chart page →

6,982
directusdirectus-io2.1.02 of 3See more

directus directus-io 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

7,565
jellystatdjjudas21Verified publisher0.1.121 of 1See more

jellystat djjudas21 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
cyfershepard/jellystat:1.1.11c4e2dfa8bddf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,743
dominodominoVerified publisher0.1.112 of 3See more

domino domino 0.1.11

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

8,864
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

10,911
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

18,480
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

3,760
nginx-phpfpmdrpsychickVerified publisher0.1.11 of 2See more

nginx-phpfpm drpsychick 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,989
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

5,754
dyff-orchestratordyff-orchestratorVerified publisher0.22.191 of 1See more

dyff-orchestrator dyff-orchestrator 0.22.19

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,371
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

4,445
glpieftechcombr-glpiVerified publisher2.12.12See more

glpi eftechcombr-glpi 2.12.1

2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mariadb:12.3.2a02fe89cb597
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
valkey/valkey:9.1.08e8d64b405ce
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

elastalert2elastalert22.31.01 of 1See more

elastalert2 elastalert2 2.31.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
jertel/elastalert2:2.31.03cbf63f9b7dc
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,823
elchi-stackelchi1.13.03 of 10See more

elchi-stack elchi 1.13.0

3 of the 10 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
envoyproxy/envoy:v1.33.056da5afd7df3
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
library/mongo:6.0.12646902910d6a
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

15,540
emqx-enterpriseemqx-operator6.3.01 of 1See more

emqx-enterprise emqx-operator 6.3.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
emqx/emqx-enterprise:6.3.03b6d9c0c4199
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

884
enbuildenbuildVerified publisher0.0.505 of 6See more

enbuild enbuild 0.0.50

5 of the 6 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
zlib@1:1.2.13.dfsg-1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

31,674
roundcubeencircle360-ossVerified publisher0.8.31 of 1See more

roundcube encircle360-oss 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

5,662
eoapieoapiOfficialVerified publisher0.16.23 of 7See more

eoapi eoapi 0.16.2

3 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/tipg:1.6.130b88f2a6b73
zlib@1.3.2-r5
1.3.3-r0
ghcr.io/stac-utils/stac-fastapi-pgstac:6.4.0fa35b9519abb
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/stac-utils/titiler-pgstac:3.1.0788173c5876d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

6,453
paraerudikaVerified publisher0.3.01 of 1See more

para erudika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
erudikaltd/para:latest_stable235e0bc53da2
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

1,130
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

3,096
besuethereum-helm-chartsVerified publisher1.1.41 of 2See more

besu ethereum-helm-charts 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
hyperledger/besu:latest6f3f21ce5333
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

693
erigonethereum-helm-chartsVerified publisher2.0.21 of 2See more

erigon ethereum-helm-charts 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
erigontech/erigon:latest2252efdf9abe
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,129
lighthouseethereum-helm-chartsVerified publisher1.1.91 of 2See more

lighthouse ethereum-helm-charts 1.1.9

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
sigp/lighthouse:latest9a62bb870545
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

1,590
rethethereum-helm-chartsVerified publisher0.1.91 of 2See more

reth ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

678
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

11,530
iperf3eugen0.2.21 of 1See more

iperf3 eugen 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
networkstatic/iperf3:latest0592f012c636
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

829
mcrouterevryfs-ossVerified publisher0.4.01 of 2See more

mcrouter evryfs-oss 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
zlib@1:1.2.11.dfsg-0ubuntu2.2
no fix listed

Open the chart page →

6,511
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,357
cap-captcha-serverf3k-techVerified publisher0.21.01 of 1See more

cap-captcha-server f3k-tech 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
tiago2/cap:2.159f5ae4e261e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,686
fastapi-microservice-appfast-api-microservice-app1.3.04 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

4 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
zlib@1:1.2.13.dfsg-1
no fix listed
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
zlib@1:1.2.13.dfsg-1
no fix listed
omkara25/simple-microservice-app-user-service:v2d62cba548580
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,655
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,086
taigafermosit0.0.112 of 7See more

taiga fermosit 0.0.11

2 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
taigaio/taiga-protected:latestfd4568a97a59
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

8,541
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

12,989
ferriskeyferriskey0.8.01See more

ferriskey ferriskey 0.8.0

1 container image this version deploys carries CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

12,941
rss-bridgegabe565Verified publisher0.5.21 of 1See more

rss-bridge gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/rss-bridge/rss-bridge:latest606896116558
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,203
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

17,440
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

22,792
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

35,444
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed

Open the chart page →

15,728
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

11,680
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

14,004
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
zlib@1:1.2.11.dfsg-0ubuntu2.2
no fix listed

Open the chart page →

11,582
ombigeek-cookbookVerified publisher11.5.21 of 1See more

ombi geek-cookbook 11.5.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
zlib@1:1.2.11.dfsg-2ubuntu9
no fix listed

Open the chart page →

5,178
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

8,038

Container images carrying it

2,562 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8snetworkplumbingwg/multus-cni:latest-thickb2136983532b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/kagent-dev/doc2vec/mcp:1.1.14ace1de323f4a
zlib@1.3.1-r51
1.3.3-r0
1
ghcr.io/kagent-dev/kagent/ui:0.10.12c4de55d3ffe
zlib@1.3.2-r5
1.3.3-r0
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/klicktipp/csa-exporter:0.3.12c69513f9d85
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/klicktipp/snds-exporter:v0.2.4a23b389cb3c5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
zlib@1:1.2.11.dfsg-0ubuntu2.2
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
1
ghcr.io/kubelauncher/cassandrab66aba320083
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/etcd8ab954711fb9
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/kafka43e1085cd0a8
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/keycloakafe3bd73d7cf
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/kubectl7280594a2f18
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/mariadbe25056a6ec52
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/memcachedb599ca6b3ff3
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/mongodb9bc37ed78a8b
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/mysqle9609bd50416
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/openldap8978aa002bc0
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/kubelauncher/postgresql1a27e11e5925
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/rabbitmqff5a36a457f1
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/kubelauncher/redisbcd8e9a6224f
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubelauncher/zookeeper7826e9caa461
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
1
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
rsync@3.1.3-8
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
rsync@3.1.3-8
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
no fix listed
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
ghcr.io/lambdaclass/ethrex:latest0c7896f060d6
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
zlib@1:1.3.dfsg-3.1ubuntu2
no fix listed
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/libretime/icecast:latest3c98b92e9535
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/linuxserver/duplicati:latesta792931146b4
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed
1
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
zlib@1:1.2.11.dfsg-2ubuntu9
no fix listed
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed
1
ghcr.io/litesql/ha:latest4029479b8ea7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/litesql/pocketbase-ha:latestc5b28608958b
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.