StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,417
of 17,787 indexed, latest versions
Container images
2,395
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,417 of 17,787 indexed charts deploy, on 2,395 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+47 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,374
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,417 by stars
ChartLatestAffected imagesRadar Score
csghubcsghubVerified publisher2.4.311 of 34See more

csghub csghub 2.4.3

11 of the 34 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:7.4.9a8f08480e1f8
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/agenticflow:ee-v0.6-52f03fead54db
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/csgbot:v0.6.7-eeaf7191a9cf8a
perl@5.40.1-6
no fix listed
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
perl@5.36.0-7+deb12u1
no fix listed
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
perl@5.36.0-7+deb12u1
no fix listed
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
perl@5.36.0-7+deb12u1
no fix listed
opencsghq/kubectl:latestb6d87e1048c2
perl@5.36.0-7+deb12u2
no fix listed
opencsghq/label-studio:v2.4.0b4e849fcf94a
perl@5.40.1-6
no fix listed
opencsghq/postgres:15.1842578c9d3ebd
perl@5.40.1-6
no fix listed

Open the chart page →

59,131
csgshipcsghubVerified publisher0.4.62 of 10See more

csgship csghub 0.4.6

2 of the 10 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:7.4.1171da9275c5f3
perl@5.36.0-7+deb12u3
no fix listed
opencsghq/postgres:15.19b98600564e07
perl@5.40.1-6
no fix listed

Open the chart page →

11,402
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
perl@5.40.1-6
no fix listed
opencsghq/postgres:15.19b98600564e07
perl@5.40.1-6
no fix listed

Open the chart page →

6,532
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
perl@5.36.0-7
no fix listed

Open the chart page →

14,206
wazuhcsic-charts0.1.02 of 4See more

wazuh csic-charts 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
wazuh/wazuh-dashboard:4.4.11787550d2358
perl@5.30.0-9ubuntu0.3
no fix listed
wazuh/wazuh-manager:4.4.121994f40e0da
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

13,937
cspconsolecspconsole1.3.114 of 5See more

cspconsole cspconsole 1.3.11

4 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
perl@5.36.0-7+deb12u3
no fix listed
cspconsole/csp-control-center:1.0.1046dda4a31bd6
perl@5.36.0-7+deb12u3
no fix listed
cspconsole/report-collector:1.0.15839750248193b
perl@5.36.0-7+deb12u3
no fix listed
cspconsole/report-processor:1.0.279a2d8840bfdf
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

11,891
cypikcypik-app0.1.02 of 2See more

cypik cypik-app 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed
library/nginx:1.25a484819eb602
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

7,527
view-cadvisorcypik-helm-chart0.1.01 of 1See more

view-cadvisor cypik-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,839
irods-csi-drivercyverse0.12.01 of 4See more

irods-csi-driver cyverse 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
cyverse/irods-csi-driver:v0.12.0aa69d105b292
perl@5.34.0-3ubuntu1.8
no fix listed

Open the chart page →

5,257
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

16,632
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

5,438
nginx-chartdaeho12Verified publisher0.1.01 of 1See more

nginx-chart daeho12 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,839
dakeradakera-helmVerified publisher0.11.1072 of 3See more

dakera dakera-helm 0.11.107

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/dakera-ai/dakera:0.11.101af610992a416
perl@5.40.1-6
no fix listed
ghcr.io/dakera-ai/dakera-mcp:0.10.11a3d48418b14a
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,962
pagesdalston-pages1.0.02 of 3See more

pages dalston-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,233
pagesdaman-dell-kuber1.0.02 of 3See more

pages daman-dell-kuber 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,233
damap-chartdamapVerified publisher0.3.04 of 5See more

damap-chart damap 0.3.0

4 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8f29984bd1e22
perl@5.40.1-6
no fix listed
library/postgres:16f1c3376c26f2
perl@5.40.1-6
no fix listed
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
perl@5.40.1-6
no fix listed

Open the chart page →

13,859
nvidia-gpu-exporterdanchevVerified publisher1.0.31 of 1See more

nvidia-gpu-exporter danchev 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/utkuozdemir/nvidia_gpu_exporter:1.5.0d75967a4dd72
perl@5.40.1-7build1
no fix listed

Open the chart page →

1,223
dapr-agentsdapr-agents-devVerified publisher0.1.52 of 31See more

dapr-agents dapr-agents-dev 0.1.5

2 of the 31 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:6.2143f7bfc2358
perl@5.36.0-7+deb12u3
no fix listed
mcp/grafana:latest9362bcf6aa0e
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

22,223
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
no fix listed

Open the chart page →

3,576
helm-chart-testdasmeta0.1.41 of 1See more

helm-chart-test dasmeta 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
no fix listed

Open the chart page →

1,839
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
perl@5.26.1-6ubuntu0.6
no fix listed

Open the chart page →

5,838
pgcatdasmeta0.1.31 of 2See more

pgcat dasmeta 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,924
proxysqldasmeta1.2.31 of 1See more

proxysql dasmeta 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
proxysql/proxysql:2.7.3a4d6c35c2949
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,749
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,914
sentry-relaydasmeta0.1.21 of 1See more

sentry-relay dasmeta 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
getsentry/relay:24.10.0ba7bf9163219
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,401
monitoring-stackdata354-helmVerified publisher1.4.21 of 4See more

monitoring-stack data354-helm 1.4.2

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
grafana/fluent-plugin-loki:latest8a3882e8c28b
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

3,189
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

27,749
datacube-dashboarddatacube-charts0.5.101 of 2See more

datacube-dashboard datacube-charts 0.5.10

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
no fix listed

Open the chart page →

1,638
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

18,884
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

6,177
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

6,028
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

22,425
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
perl@5.34.0-3ubuntu1.4
no fix listed

Open the chart page →

6,226
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

24,356
cloudpremdatadogVerified publisher0.5.21 of 1See more

cloudprem datadog 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

1,164
observability-pipelines-workerdatadogVerified publisher2.21.21 of 1See more

observability-pipelines-worker datadog 2.21.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
gcr.io/datadoghq/observability-pipelines-worker:2.21.1de6ff0f1a854
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

832
private-action-runnerdatadogVerified publisher1.28.11 of 1See more

private-action-runner datadog 1.28.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,164
datagrokdatagrok1.0.31 of 7See more

datagrok datagrok 1.0.3

1 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
datagrok/grok_connect:latestf5876d3aebb8
perl@5.34.0-3ubuntu1.7
no fix listed

Open the chart page →

2,368
datagrok_grok_connectdatagrok1.0.01 of 1See more

datagrok_grok_connect datagrok 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
datagrok/grok_connect:latestf5876d3aebb8
perl@5.34.0-3ubuntu1.7
no fix listed

Open the chart page →

1,665
eg-edge-stackdatawire0.0.11 of 7See more

eg-edge-stack datawire 0.0.1

1 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

15,781
pagesdavid-pages1.0.02 of 3See more

pages david-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,233
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

10,116
dbgatedbgate-helm-chartVerified publisher0.1.81 of 1See more

dbgate dbgate-helm-chart 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dbgate/dbgate:7.2.3f2dc7423ea88
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,409
pagesdebasish-pages1.0.02 of 3See more

pages debasish-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,233
decisionrules-ocpdecisionrules-ocpVerified publisher0.1.01 of 4See more

decisionrules-ocp decisionrules-ocp 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
decisionrules/ai-engine:latest38c377e7c01e
perl@5.40.1-6
no fix listed

Open the chart page →

2,698
defactopsdefactops1.0.91 of 2See more

defactops defactops 1.0.9

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
defactops/defactops-backend:1.0.2307b663c0092a
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

4,353
airtraildefault-ghVerified publisher0.2.21 of 2See more

airtrail default-gh 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
johly/airtrail:v3.11.19f702b91e0e7
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,675
intel-gpu-exporterdefault-ghVerified publisher0.1.01 of 1See more

intel-gpu-exporter default-gh 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

4,846
defguard-gatewaydefguard2.1.01 of 1See more

defguard-gateway defguard 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/defguard/gateway:2.1.0738b2b6f413b
perl@5.40.1-6
no fix listed

Open the chart page →

921
defguard-proxydefguard2.1.01 of 1See more

defguard-proxy defguard 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/defguard/defguard-proxy:2.1.08765a28e383e
perl@5.40.1-6
no fix listed

Open the chart page →

804

Container images carrying it

2,395 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:16233f361c5819
perl@5.36.0-7+deb12u1
no fix listed
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
perl@5.36.0-7+deb12u2
no fix listed
4
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
perl@5.36.0-7+deb12u2
no fix listed
4
hyperledger/fabric-ca:latesta70b6ba64a08
perl@5.34.0-3ubuntu1.7
no fix listed
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
perl@5.22.1-9ubuntu0.5
no fix listed
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
perl@5.22.1-9ubuntu0.6
no fix listed
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
perl@5.34.0-3ubuntu1.3
no fix listed
4
library/mongo:5.0-focal5e15a3f014ed
perl@5.30.0-9ubuntu0.5
no fix listed
4
library/mongo:4.2.12-bionic628741415fc9
perl@5.26.1-6ubuntu0.5
no fix listed
4
library/mongo:4.4.66efa05203990
perl@5.26.1-6ubuntu0.5
no fix listed
4
library/nginx:1.27.1287ff321f9e3
perl@5.36.0-7+deb12u1
no fix listed
4
library/postgres:134689940c6838
perl@5.40.1-6
no fix listed
4
library/rabbitmq:3.11-managementc3f70098e01d
perl@5.34.0-3ubuntu1.3
no fix listed
4
library/redis:7:7.4:7.4.1171da9275c5f3
perl@5.36.0-7+deb12u3
no fix listed
4
mastercloudapps/planner:v1.2340a950b311b2
perl@5.34.0-3ubuntu1.1
no fix listed
4
opea/llm-tgi:1.00c25aab3f106
perl@5.36.0-7+deb12u1
no fix listed
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
perl@5.26.1-6ubuntu0.5
no fix listed
4
shashkist/flask-contacts-app:latest581de1fd6084
perl@5.36.0-7+deb12u1
no fix listed
4
valkey/valkey:9.0.2930b41430fb7
perl@5.40.1-6
no fix listed
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
perl@5.34.0-3ubuntu1.8
no fix listed
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
perl@5.40.1-7ubuntu0.1
no fix listed
4
apache/superset:6.1.0:latest16b50bbef664
perl@5.36.0-7+deb12u3
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
perl@5.36.0-7+deb12u2
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
perl@5.36.0-7+deb12u2
no fix listed
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
perl@5.36.0-7+deb12u1
no fix listed
3
ciscolabs/rtsp-client:latesta7b60ec88285
perl@5.30.0-9ubuntu0.2
no fix listed
3
ciscolabs/rtsp-server:latestb59fc10bb821
perl@5.30.0-9ubuntu0.2
no fix listed
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
perl@5.30.0-9ubuntu0.2
no fix listed
3
codeurjc/planner:v1.0800cf520c245
perl@5.34.0-3ubuntu1.1
no fix listed
3
dgraph/dgraph:v21.12.03b55ea83fffe
perl@5.30.0-9ubuntu0.2
no fix listed
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
perl@5.36.0-7+deb12u3
no fix listed
3
envoyproxy/envoy:v1.31.02bf7f042e396
perl@5.34.0-3ubuntu1.3
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
3
guacamole/guacamole:1.6.0f344085e618b
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
3
jacobalberty/unifi:v10.0.162896c0ab82d33
perl@5.30.0-9ubuntu0.5
no fix listed
3
library/nginx:1.25:1.25.5a484819eb602
perl@5.36.0-7+deb12u1
no fix listed
3
library/node:ltsbe23f54a88d3
perl@5.36.0-7+deb12u3
no fix listed
3
library/python:3.12-slim78387bc3881b
perl@5.40.1-6
no fix listed
3
library/rabbitmq:4.3.5-management:4-management:managementffd1b50c522a
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
3
library/ubuntu:24.0433ceb71981b6
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
3
mcp/grafana:latest9362bcf6aa0e
perl@5.36.0-7+deb12u3
no fix listed
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
no fix listed
3
selenium/hub:3.141.5902f251d48d5f
perl@5.30.0-9ubuntu0.2
no fix listed
3
sigp/lighthouse:latest-amd6450f66cfebb6d
perl@5.34.0-3ubuntu1.5
no fix listed
3
vaultwarden/server:1.37.1ebdfe70701c6
perl@5.40.1-6
no fix listed
3
xenondb/percona:5.7.330e26872a2b67
perl@5.30.0-9ubuntu0.2
no fix listed
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
perl@5.36.0-7+deb12u1
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
perl@5.36.0-7
no fix listed
3
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
perl@5.36.0-7+deb12u3
no fix listed
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
perl@5.36.0-7+deb12u1
no fix listed
3

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.