StackRadar

CVE-2026-85091

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,647
of 17,821 indexed, latest versions
Container images
2,673
deployed by those charts
Fix available
2 of 5
affected packages

CVE-2026-85091 affecting package zlib 1.3.2-1

Carried by container images the latest versions of 2,647 of 17,821 indexed charts deploy, on 2,673 images.

Affected packageAffected versionsFixed inImages
zlibdeb1:1.2.8.dfsg-1ubuntu1, 1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1+22 more1:1.3.dfsg+really1.3.1-1+e22,622
zlibapk1.3-r2, 1.3.1-r4, 1.3.1-r5, 1.3.1-r6+6 more1.3.2.1_rc20260601-r050
rsyncdeb3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2, 3.1.1-3ubuntu1.3, 3.1.2-2.1ubuntu1+9 moreno fix listed31
klibcdeb2.0.3-0ubuntu1, 2.0.3-0ubuntu1.14.04.3, 2.0.4-9ubuntu2, 2.0.13-4ubuntu0.2no fix listed9
zlibrpm1.3.1-1.azl3no fix listed1
OSV records
CGA-64hx-6x96-r8f7CGA-6ph6-75jp-484pDEBIAN-CVE-2026-85091UBUNTU-CVE-2026-85091AZL-99090ECHO-2e36-531c-37dd
Also known as
CGA-7955-fhww-9pv3, CGA-m46g-37hm-gpgh

Charts affected

2,647 by stars
ChartLatestAffected imagesRadar Score
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,272
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
zlib@1:1.2.13.dfsg-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
zlib@1:1.2.13.dfsg-1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

37,558
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,593
cloud9nicholaswildeVerified publisher1.0.01 of 1See more

cloud9 nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
linuxserver/cloud9:version-1.29.245c5fe102ff3
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

11,745
papermergenicholaswildeVerified publisher1.0.21 of 1See more

papermerge nicholaswilde 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/papermerge:version-v2.0.198ba2dd3f0bd
zlib@1:1.2.11.dfsg-2ubuntu1.3
no fix listed

Open the chart page →

20,273
writefreelynicholaswildeVerified publisher1.0.01 of 1See more

writefreely nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/writefreely:version-0.13.1c3c8481b7e56
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

8,107
helm-composenousefreakVerified publisher0.1.32 of 2See more

helm-compose nousefreak 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
rsync@3.1.3-8ubuntu0.1
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
no fix listed
library/wordpress:latesta85a30d9e752
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

13,651
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,052
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,593
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

14,865
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
zlib@1:1.2.11.dfsg-2ubuntu9
no fix listed

Open the chart page →

4,376
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,824
opentelemetry-demoopentelemetry-helmOfficialVerified publisher0.42.012 of 34See more

opentelemetry-demo opentelemetry-helm 0.42.0

12 of the 34 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-frontend28358db46206
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-chatbot604b1f493c92
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-shipping7130dba0e77e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-mcp81db69cdd0b6
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-flagd-ui97a3d37e709f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-fraud-detectiona07ee694304b
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-load-generatorb130d6cee6cb
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-accountingbfd9d13ac58a
zlib@1:1.3.dfsg-3.1ubuntu2.2
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-agentd0f4ae0b32a8
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-addfd7a4697116
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
ghcr.io/open-telemetry/demo:3.1.0-frontend-proxyfd4da88bfeaa
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

20,109
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,939
rustfs-operatoroperatorVerified publisher0.7.01 of 1See more

rustfs-operator operator 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
rustfs/operator:0.07b96f986e5991
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

1,019
opikopikOfficialVerified publisher2.2.712 of 13See more

opik opik 2.2.71

2 of the 13 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
redis/redis-stack-server:7.2.0-v10e44b2b49d059
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

14,914
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest35575d4f2bfe
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed
shaowenchen/ops-server:latest6bac5cebd125
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

94,475
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

3,702
paperless-ngxpaperlessVerified publisher0.4.03 of 3See more

paperless-ngx paperless 0.4.0

3 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
zlib@1:1.2.13.dfsg-1
no fix listed
valkey/valkey:9.0.54c64dfeae602
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

8,593
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,904
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
zlib@1:1.2.11.dfsg-0ubuntu2
no fix listed

Open the chart page →

4,606
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

7,153
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
zlib@1:1.2.11.dfsg-2ubuntu9.1
no fix listed

Open the chart page →

7,633
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,593
matomopockostVerified publisher1.3.03 of 3See more

matomo pockost 1.3.0

3 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
library/redis:8.10.1298e5b3bc566
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

5,247
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
treskon/portrait:DEV-latest88e813f22347
zlib@1:1.3.dfsg+really1.3.1-1ubuntu3
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

32,232
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/postgres:16a3b7f434b2dc
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,272
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

2,451
privacyideaprivacyidea1.0.62 of 2See more

privacyidea privacyidea 1.0.6

2 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
gpappsoft/privacyidea-docker:3.12.2af7841adad26
zlib@1.3.1-r51
1.3.2.1_rc20260601-r0
library/mariadb:11.7.2fcc7fcd7114a
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

5,565
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

8,340
pyramidanalyticspyramidanalyticsVerified publisher2025.11.2261 of 9See more

pyramidanalytics pyramidanalytics 2025.11.226

1 of the 9 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
pyramidanalytics/gis:2025.11.2264b4c30192175
zlib@1.3.2-r5
1.3.2.1_rc20260601-r0

Open the chart page →

163
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

3,274
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

56,594
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

6,930
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed

Open the chart page →

2,855
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest2cc70b45244a
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

67,944
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,629
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

4,298
reportportalreportportal-ioOfficialVerified publisher26.8.124 of 15See more

reportportal reportportal-io 26.8.12

4 of the 15 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
zlib@1:1.2.13.dfsg-1
no fix listed
library/postgres:18.4a02db8cac496
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
library/rabbitmq:4.3.4-managementeb5295d08332
zlib@1:1.3.dfsg-3.1ubuntu2.1
no fix listed
reportportal/service-auto-analyzer:5.15.5c449b93629a5
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

12,077
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
zlib@1:1.2.11.dfsg-2ubuntu9.2
no fix listed

Open the chart page →

7,249
retyc-csiretyc-csi0.2.01 of 3See more

retyc-csi retyc-csi 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed

Open the chart page →

1,420
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
zlib@1:1.2.13.dfsg-1
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

6,477
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

9,890
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed

Open the chart page →

10,175
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

4,777
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

5,635
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

6,148
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

7,796
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
zlib@1:1.2.11.dfsg-2ubuntu1.5
no fix listed

Open the chart page →

6,957
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-85091.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
zlib@1:1.2.13.dfsg-1
no fix listed

Open the chart page →

2,645

Container images carrying it

2,673 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.26645e014f75d
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-kas:v19.4.08ae8be4645ce
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
zlib@1:1.2.11.dfsg-2ubuntu1.2
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
zlib@1:1.3.dfsg+really1.3.1-1+b1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
zlib@1:1.2.13.dfsg-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
zlib@1:1.2.13.dfsg-1
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.