StackRadar

CVE-2026-85091

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,608
of 17,803 indexed, latest versions
Container images
2,612
deployed by those charts
Fix available
2 of 5
affected packages

CVE-2026-85091 affecting package zlib 1.3.2-1

Carried by container images the latest versions of 2,608 of 17,803 indexed charts deploy, on 2,612 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.8.dfsg-1ubuntu1, 1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1+22 more1:1.3.dfsg+really1.3.1-1+e22,517
zlibapk1.3-r2, 1.3.1-r4, 1.3.1-r5, 1.3.1-r6+6 more1.3.2.1_rc20260601-r094
rsyncdeb3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2, 3.1.1-3ubuntu1.3, 3.1.2-2.1ubuntu1+8 moreno fix listed29
klibcdeb2.0.3-0ubuntu1, 2.0.3-0ubuntu1.14.04.3no fix listed7
zlibrpm1.3.1-1.azl3no fix listed1
OSV records
CGA-64hx-6x96-r8f7CGA-6ph6-75jp-484pDEBIAN-CVE-2026-85091UBUNTU-CVE-2026-85091AZL-99090ECHO-2e36-531c-37dd
Also known as
CGA-7955-fhww-9pv3, CGA-m46g-37hm-gpgh
Trending
Rank 39 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

2,608 by stars
ChartLatestAffected imagesRadar Score
sdtdgeek-cookbookVerified publisher0.3.21 of 1See more

sdtd geek-cookbook 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/reitermarkus/7d2d:main39953b387b61
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,552
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

96,390
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

9,065
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

27,056
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
rsync@3.1.3-8ubuntu0.3
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed
no fix listed

Open the chart page →

12,054
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed

Open the chart page →

18,101
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,758
cloudflare-tunnelgeneral-helm-chartsVerified publisher0.2.01 of 1See more

cloudflare-tunnel general-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
cloudflare/cloudflared:latest51c9cefcb456
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

570
mongogengxiankun-charts0.1.01 of 1See more

mongo gengxiankun-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

4,021
redisgengxiankun-charts0.2.01 of 1See more

redis gengxiankun-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,004
rocketmqgengxiankun-charts0.3.01 of 1See more

rocketmq gengxiankun-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/rocketmq:5.3.0434d8398f996
zlib@1:1.3.dfsg-3.1ubuntu2
no fix listed

Open the chart page →

4,970
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,715
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.84 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

4 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
zlib@1:1.2.11.dfsg-0ubuntu2.2
no fix listed
jingking/geonetwork-hnap:4.2.843e74ab234e1
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
library/elasticsearch:7.17.1588c2ec10c7f2
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
library/kibana:7.17.150172f1c538e7
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

34,935
istiogetindataVerified publisher1.11.12 of 2See more

istio getindata 1.11.1

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:1.11.1c552478f8f11
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

16,880
ghostghostVerified publisher0.1.02 of 4See more

ghost ghost 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
cloudflare/cloudflared:latest51c9cefcb456
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/ghost:5.79.083f7bf209844
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,136
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,022
redis-uigin0.0.11 of 1See more

redis-ui gin 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
patrikx3/p3x-redis-ui:latestf19eb45b0694
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,101
rabbitmqginger-society0.1.01 of 2See more

rabbitmq ginger-society 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/rabbitmq:4-managementffd1b50c522a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

1,529
knativegitlabVerified publisher0.10.03 of 10See more

knative gitlab 0.10.0

3 of the 10 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
istio/node-agent-k8s:1.2.9268ab879ea51
zlib@1:1.2.8.dfsg-2ubuntu4.1
no fix listed
istio/pilot:1.2.9c09319753454
zlib@1:1.2.8.dfsg-2ubuntu4.1
no fix listed
istio/proxyv2:1.2.90c78be035e98
zlib@1:1.2.8.dfsg-2ubuntu4.1
no fix listed

Open the chart page →

193,711
glassflow-etlglassflowVerified publisher0.5.211 of 16See more

glassflow-etl glassflow 0.5.21

1 of the 16 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

12,422
pgbouncerglassflowVerified publisher0.1.01 of 1See more

pgbouncer glassflow 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/pgbouncer:1.23.192356da09704
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,317
glauthglauthVerified publisher0.3.171 of 2See more

glauth glauth 0.3.17

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
nouchka/sqlite3:latestd183308f201c
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,682
glpiglpi-chart0.1.13 of 3See more

glpi glpi-chart 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
library/phpmyadmin:latest3a8a8d6b5289
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

12,444
goofy-chartgoofy-chart0.1.01 of 1See more

goofy-chart goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
platformgoofy-chart0.1.01 of 1See more

platform goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
devopsgoofy/k8s-platform:latestad865312099f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,832
googly-logingoogly-login0.1.01 of 2See more

googly-login googly-login 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,686
Governify-Bluejaygovernify0.1.02 of 12See more

Governify-Bluejay governify 0.1.0

2 of the 12 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
library/redis:latest298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

22,704
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

24,493
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
library/cassandra:3.11.65aa8400b4b3b
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

19,370
kubernetes-dashboardgpg-dev7.5.01 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

1 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

6,092
openclawgpg-dev1.5.361 of 2See more

openclaw gpg-dev 1.5.36

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,684
opentelemetry-demogpg-dev0.33.89 of 27See more

opentelemetry-demo gpg-dev 0.33.8

9 of the 27 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

49,771
velerogpg-dev12.0.01 of 1See more

velero gpg-dev 12.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
velero/velero:v1.18.0e4d1e79be2ee
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

1,573
video-analytics-demogpu-operator0.1.92 of 3See more

video-analytics-demo gpu-operator 0.1.9

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

15,853
video-analytics-demo-l4tgpu-operator0.1.31 of 3See more

video-analytics-demo-l4t gpu-operator 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,879
grafana-samplinggrafana1.1.71 of 2See more

grafana-sampling grafana 1.1.7

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

3,403
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
zlib@1:1.3.dfsg-3.1ubuntu2
no fix listed

Open the chart page →

78,760
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

4,693
grayloggraylogVerified publisher1.0.22 of 4See more

graylog graylog 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
library/mongo:85211c51171f5
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

5,389
gridgain9gridgainVerified publisher1.1.101 of 2See more

gridgain9 gridgain 1.1.10

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/debian:12.12-slimd5d3f9c23164
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,247
routergroundcover1.12.3755 of 7See more

router groundcover 1.12.375

5 of the 7 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
public.ecr.aws/groundcovercom/kong:3.9.3-mini-20260804-107dfd0693fc4
zlib@1:1.3.dfsg+really1.3.1-1+e1
1:1.3.dfsg+really1.3.1-1+e2
public.ecr.aws/groundcovercom/kong/kubernetes-ingress-controller:3.5.3-20260205bf9db911deed
zlib@1:1.3.dfsg+really1.3.1-1+b1
1:1.3.dfsg+really1.3.1-1+e2
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
zlib@1:1.3.dfsg+really1.3.1-1+b1
1:1.3.dfsg+really1.3.1-1+e2
quay.io/groundcover/tools:20260719b705e0cbe171
zlib@1:1.3.dfsg+really1.3.1-1+e1
1:1.3.dfsg+really1.3.1-1+e2

Open the chart page →

6,154
temporalgroundcover1.12.3752 of 2See more

temporal groundcover 1.12.375

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
zlib@1:1.3.dfsg+really1.3.1-1+e1
1:1.3.dfsg+really1.3.1-1+e2
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
zlib@1:1.3.dfsg+really1.3.1-1+e1
1:1.3.dfsg+really1.3.1-1+e2

Open the chart page →

2,164
gtmgtmVerified publisher1.0.21 of 1See more

gtm gtm 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
gcr.io/cloud-tagging-10302018/gtm-cloud-image:stable688d35c6c544
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

500
gwangju_2-3gwangju2-30.1.01 of 5See more

gwangju_2-3 gwangju2-3 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
fluent/fluent-bit:latestd792375ca8e5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

6,513
librechat-exporterhajowielandVerified publisher1.0.01 of 1See more

librechat-exporter hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,327
rag-apihajowielandVerified publisher1.0.01 of 1See more

rag-api hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,742
web-checkhajowielandVerified publisher1.0.11 of 1See more

web-check hajowieland 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,541
hatchet-apihatchetOfficialVerified publisher0.19.01 of 4See more

hatchet-api hatchet 0.19.0

1 of the 4 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,726
hatchet-hahatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-ha hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
zlib@1:1.2.13.dfsg-1
no fix listed
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,649
hatchet-stackhatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-stack hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
zlib@1:1.2.13.dfsg-1
no fix listed
library/postgres:latest4ef4dbc939d6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,649

Container images carrying it

2,612 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
zlib@1:1.2.11.dfsg-0ubuntu2.2
no fix listed
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
zlib@1:1.3.dfsg+really1.3.1-1+e1
1:1.3.dfsg+really1.3.1-1+e2
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
zlib@1:1.2.13.dfsg-1
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
ghcr.io/quenchworks/images/adminere3aa22283888
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/airflow66d1498b17ca
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/apisix2b242df1ab22
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/argocdc59d7ac2b321
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/coolify-appce43126a3842
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/couchdbd40797d9919e
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/documentdbbe72db1f2865
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/dragonfly6d5bc5029325
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/drupal1969d8357d81
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/elasticsearch388176d16968
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/emqxc5a4a38d83fc
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/excalidraw08a23c56caba
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/floci1c83a712bf07
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/fluent-bit5d4db482f1b6
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/forgejo9fde07ee32a0
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/giteaf49c7eb33851
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/haproxy56b89c3b2aa9
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/harbor-portalc5cf43e186b5
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/httpd8ed83ce04191
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/ingress-nginx0dd302223669
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/jenkinse92dba4e78c5
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/kafka2d0de089e3b4
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/kongb1f7e7ea8f6c
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/matomoaf1aed4e7bff
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/mlflow03cc31f4c3f0
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/mongodbe540b335ce42
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/neo4jc07746a9527c
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/nextclouda113d014a824
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1
ghcr.io/quenchworks/images/opensearch45c60f2fc239
zlib@1.3.2-r4
1.3.2.1_rc20260601-r0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.