StackRadar

CVE-2026-85091

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,605
of 17,792 indexed, latest versions
Container images
2,608
deployed by those charts
Fix available
2 of 5
affected packages

CVE-2026-85091 affecting package zlib 1.3.2-1

Carried by container images the latest versions of 2,605 of 17,792 indexed charts deploy, on 2,608 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.8.dfsg-1ubuntu1, 1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1+22 more1:1.3.dfsg+really1.3.1-1+e22,513
zlibapk1.3-r2, 1.3.1-r4, 1.3.1-r5, 1.3.1-r6+6 more1.3.2.1_rc20260601-r094
rsyncdeb3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2, 3.1.1-3ubuntu1.3, 3.1.2-2.1ubuntu1+8 moreno fix listed29
klibcdeb2.0.3-0ubuntu1, 2.0.3-0ubuntu1.14.04.3no fix listed7
zlibrpm1.3.1-1.azl3no fix listed1
OSV records
CGA-64hx-6x96-r8f7CGA-6ph6-75jp-484pDEBIAN-CVE-2026-85091UBUNTU-CVE-2026-85091AZL-99090ECHO-2e36-531c-37dd
Also known as
CGA-7955-fhww-9pv3, CGA-m46g-37hm-gpgh
Trending
Rank 30 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

2,605 by stars
ChartLatestAffected imagesRadar Score
passboltpassbolt2.1.16 of 6See more

passbolt passbolt 2.1.1

6 of the 6 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
zlib@1:1.2.13.dfsg-1
no fix listed
library/haproxy:3.4.10f597665a2a6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/mariadb:latestdd9b303aed4f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

13,588
reposilitereposilite1.4.21 of 1See more

reposilite reposilite 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.6.390de4c8e6c0e
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

1,046
selenium-gridselenium-grid0.59.13 of 4See more

selenium-grid selenium-grid 0.59.1

3 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
selenium/hub:4.48.0-20260905d47c27474cb4
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed
selenium/node-chrome:4.48.0-202609055ac71fd8dd1e
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed
selenium/node-firefox:4.48.0-2026090574a5c1c90f95
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

7,180
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

2,970
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,384
thehivestrangebee-helmOfficialVerified publisher1.0.74 of 7See more

thehive strangebee-helm 1.0.7

4 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
zlib@1:1.2.13.dfsg-1
no fix listed
strangebee/thehive:5.8.0-1a7f7b05fba24
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

16,242
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

14,320
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

7,957
abcdesktopabcdesktopOfficialVerified publisher4.4.121 of 9See more

abcdesktop abcdesktop 4.4.12

1 of the 9 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/abcdesktopio/mongo:safe8.0c4c1938a973b
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

822
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,415
photoprismandrenarchyVerified publisher8.15.01 of 1See more

photoprism andrenarchy 8.15.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
photoprism/photoprism:260728958642220223
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed

Open the chart page →

8,948
cloudflaredartur9010Verified publisher1.0.91 of 3See more

cloudflared artur9010 1.0.9

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,008
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

2,746
bambooatlassian-data-centerVerified publisher2.0.151 of 2See more

bamboo atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
atlassian/bamboo:12.1.114af4bb6c8d46
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

2,167
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
baserow/web-frontend:2.3.3566d24c7d9f5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

17,468
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
zlib@1:1.2.11.dfsg-2ubuntu1
no fix listed

Open the chart page →

53,171
headwind-mdmchristianhuthVerified publisher5.10.22 of 2See more

headwind-mdm christianhuth 5.10.2

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
zlib@1:1.2.13.dfsg-1
no fix listed
headwindmdm/hmdm:0.1.93550b4840840
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

5,956
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
zlib@1:1.2.13.dfsg-1
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,258
dagster-user-deploymentsdagsterVerified publisher1.13.231 of 1See more

dagster-user-deployments dagster 1.13.23

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
dagster/user-code-example:1.13.235a358fd3509f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

962
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

14,180
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
zlib@1:1.2.13.dfsg-1
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

27,465
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,196
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,639
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

2,591
geonode-k8sgeonode-k8sVerified publisher2.0.04 of 10See more

geonode-k8s geonode-k8s 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
geopython/pycsw:3.0.0-beta284662ea6b78b
zlib@1:1.2.13.dfsg-1
no fix listed
library/memcached:1.6.40cc523a19da58
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/redis:8.4.03906b477e4b6
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

14,147
gitops-promotergitops-promoterOfficialVerified publisher0.18.01 of 2See more

gitops-promoter gitops-promoter 0.18.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/gitops-promoter:v0.39.0de07cc7c72b6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,914
glpiglpi-conteiner0.1.03 of 3See more

glpi glpi-conteiner 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
library/phpmyadmin:latest3a8a8d6b5289
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

12,399
grafana-mcpgrafana-communityVerified publisher0.23.21 of 1See more

grafana-mcp grafana-community 0.23.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.4.2f87fa67a561f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,097
mongodbgroundhog2k0.8.31 of 1See more

mongodb groundhog2k 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:8.3.115d7043a4ffe0
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed

Open the chart page →

924
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,204
karakeephelmforgeVerified publisher1.2.92 of 3See more

karakeep helmforge 1.2.9

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,553
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,689
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,667
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,068
openctihelm-openctiVerified publisher3.0.101 of 8See more

opencti helm-opencti 3.0.10

1 of the 8 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,413
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
apache/hertzbeat-collector:1.8.0a2bab1be574c
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
library/postgres:159b1d34adbce1
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

14,314
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
zlib@1:1.2.13.dfsg-1
no fix listed
library/neo4j:2026.05.06c162e2432f8
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

10,561
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

1,738
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

6,370
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed
istio/proxyv2:1.14.1df69c1a7af7c
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed
library/python:3.7eedf63967cdb
zlib@1:1.2.13.dfsg-1
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
zlib@1:1.2.8.dfsg-2ubuntu4.1
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

97,283
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

10,583
testkubekubeshop2.13.22 of 5See more

testkube kubeshop 2.13.2

2 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
kubeshop/bitnami-mongodb:8.3.8d48b172d99d8
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
kubeshop/testkube-minio:2025.10d8e1af6aca99
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,178
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,875
libredb-studiolibredb-studioVerified publisher0.1.641 of 1See more

libredb-studio libredb-studio 0.1.64

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.0fa925884368a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,163
local-ailocalai3.4.21 of 1See more

local-ai localai 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
quay.io/go-skynet/local-ai:latestd78cd113b2bc
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

4,109
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

8,024
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

9,326
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/ubuntu:22.042edbbc5dc405
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

1,585
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

8,788
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

10,609

Container images carrying it

2,608 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/openrelik/openrelik-server:latestce1132261523
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-shipping02602e60edbf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-fraud-detection1cdfd1bcf476
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-frontend9505e349e140
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/openunison/openunison-k8s:1.0.51128081dae281
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
1
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-webui/terminals:latest5d2fd44366a4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.