StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,414
of 17,790 indexed, latest versions
Container images
2,398
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,414 of 17,790 indexed charts deploy, on 2,398 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+47 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,377
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,414 by stars
ChartLatestAffected imagesRadar Score
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

24,566
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
perl@5.34.0-3ubuntu1.5
no fix listed

Open the chart page →

3,469
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
perl@5.40.1-6
no fix listed

Open the chart page →

3,423
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
perl@5.40.1-6
no fix listed

Open the chart page →

5,926
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,377
spartanspartan0.9.11 of 1See more

spartan spartan 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
perl@5.34.0-3ubuntu1.5
no fix listed

Open the chart page →

5,810
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

15,564
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

7,075
pretixtechwolf12Verified publisher2026.7.03 of 3See more

pretix techwolf12 2026.7.0

3 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
perl@5.40.1-6
no fix listed
pretix/standalone:2026.7.05df3b7aa852e
perl@5.40.1-6
no fix listed
valkey/valkey:9.1.08e8d64b405ce
perl@5.40.1-6
no fix listed

Open the chart page →

9,894
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
perl@5.40.1-6
no fix listed

Open the chart page →

3,827
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
perl@5.34.0-3ubuntu1
no fix listed

Open the chart page →

28,634
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

10,373
crossplaneupbound-stable2.4.1-up.11 of 5See more

crossplane upbound-stable 2.4.1-up.1

1 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
perl@5.40.1-6
no fix listed

Open the chart page →

1,649
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

18,177
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

4,418
vrijbrpvrijbrpVerified publisher0.1.51 of 5See more

vrijbrp vrijbrp 0.1.5

1 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

8,836
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
perl@5.36.0-7
no fix listed

Open the chart page →

3,478
argo-cdwenerme10.9.11 of 3See more

argo-cd wenerme 10.9.1

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
perl@5.40.1-7ubuntu0.3
no fix listed

Open the chart page →

3,003
wgerwgerOfficialVerified publisher1.0.05 of 8See more

wger wger 1.0.0

5 of the 8 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
journeyapps/powersync-service:latestbf46f66e5dcc
perl@5.40.1-6
no fix listed
library/nginx:stabled5792f71a949
perl@5.40.1-6
no fix listed
library/postgres:15.186eb0add3b77c
perl@5.40.1-6
no fix listed
library/redis:8.8.0234c902a2db4
perl@5.40.1-6
no fix listed
wger/server:2.6997ead43aabd
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

8,634
windmillwindmill4.0.2641 of 3See more

windmill windmill 4.0.264

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
perl@5.40.1-6
no fix listed

Open the chart page →

1,649
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
no fix listed

Open the chart page →

4,651
paperless-ngxadnoctemVerified publisher0.4.23 of 5See more

paperless-ngx adnoctem 0.4.2

3 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
perl@5.34.0-3ubuntu1.1
no fix listed
gotenberg/gotenberg:8.36.087c16b9f3642
perl@5.40.1-6
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
no fix listed

Open the chart page →

19,828
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

13,671
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
agentarea/agentarea-api:latest9e15e16fa758
perl@5.40.1-6
no fix listed
agentarea/agentarea-mcp-runner:latestd3c209a5d531
perl@5.36.0-7+deb12u3
no fix listed
agentarea/agentarea-worker:latest1e5cb68ee77a
perl@5.40.1-6
no fix listed
valkey/valkey:9.0.1546304417fea
perl@5.40.1-6
no fix listed

Open the chart page →

15,049
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.231 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.23

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,411
icat-k8salba-helm-chartsVerified publisher1.1.01 of 4See more

icat-k8s alba-helm-charts 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
payara/server-full:7.2026.2-jdk2531f1253f0cf8
perl@5.34.0-3ubuntu1.5
no fix listed

Open the chart page →

3,746
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
perl@5.40.1-6
no fix listed

Open the chart page →

2,626
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
perl@5.40.1-6
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
perl@5.40.1-6
no fix listed

Open the chart page →

12,092
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

12,081
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
perl@5.34.0-3ubuntu1.1
no fix listed

Open the chart page →

8,387
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
perl@5.40.1-6
no fix listed

Open the chart page →

5,971
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,395
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
perl@5.36.0-7+deb12u1
no fix listed
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

22,304
antreaantreaVerified publisher2.7.02 of 2See more

antrea antrea 2.7.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

3,539
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
perl@5.34.0-3ubuntu1.4
no fix listed

Open the chart page →

7,794
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,249
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,736
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
perl@5.40.1-6
no fix listed

Open the chart page →

2,327
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
perl@5.30.0-9ubuntu0.4
no fix listed

Open the chart page →

17,951
dltbrokerassist-iot-distributed-broker0.2.03 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
perl@5.34.0-3ubuntu1.7
no fix listed
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
perl@5.22.1-9ubuntu0.5
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

77,883
dltloggingassist-iot-logging-auditing0.2.03 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
perl@5.34.0-3ubuntu1.7
no fix listed
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
perl@5.22.1-9ubuntu0.5
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

77,863
astradnsastradnsVerified publisher0.2.91 of 2See more

astradns astradns 0.2.9

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,649
music-assistantbdclark-helm-chartsVerified publisher0.4.131 of 1See more

music-assistant bdclark-helm-charts 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.10.3885872224fa5
perl@5.40.1-6
no fix listed

Open the chart page →

3,702
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

13,219
aramid-indexerbiatec-repoVerified publisher3.9.04 of 5See more

aramid-indexer biatec-repo 3.9.0

4 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
perl@5.40.1-6
no fix listed
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
perl@5.40.1-7ubuntu0.1
no fix listed
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
perl@5.40.1-7ubuntu0.1
no fix listed

Open the chart page →

13,544
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

7,246
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

5,117
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

7,246
self-hostbitwarden2.4.11 of 11See more

self-host bitwarden 2.4.1

1 of the 11 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

5,269

Container images carrying it

2,398 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
trueosiris/vrising:latest9356f98ad561
perl@5.34.0-3ubuntu1.5
no fix listed
1
tussanakorndev/kube-pod-alerts:1.0.5216fdadadf9a
perl@5.40.1-6
no fix listed
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
perl@5.34.0-3ubuntu1.3
no fix listed
1
typesense/typesense:0.25.1035ccfbc3fd8
perl@5.34.0-3ubuntu1.2
no fix listed
1
typesense/typesense:0.23.03accb727cbe2
perl@5.22.1-9ubuntu0.9
no fix listed
1
typesense/typesense:30.191604dc128e2
perl@5.34.0-3ubuntu1.5
no fix listed
1
typesense/typesense:28.0.rc35dea1b62b7b6e
perl@5.34.0-3ubuntu1.3
no fix listed
1
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
perl@5.30.0-9ubuntu0.5
no fix listed
1
ubuntu/squid:5.2-22.04_beta723891b5bc74
perl@5.34.0-3ubuntu1.5
no fix listed
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
perl@5.36.0-7+deb12u2
no fix listed
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
perl@5.30.0-9ubuntu0.2
no fix listed
1
v3xl/kubesend:0.1.06f62ca96be82
perl@5.36.0-7+deb12u2
no fix listed
1
valkey/valkey:8.1.61f84517eca8e
perl@5.40.1-6
no fix listed
1
valkey/valkey:9.0.54c64dfeae602
perl@5.40.1-6
no fix listed
1
valkey/valkey:8.0.1c5d4f082b76d
perl@5.36.0-7+deb12u1
no fix listed
1
vaultwarden/server:1.35.443498a94b22f
perl@5.40.1-6
no fix listed
1
vaultwarden/server:1.34.384fd8a47f58d
perl@5.36.0-7+deb12u2
no fix listed
1
vaultwarden/server:1.35.79a8eec71f4a5
perl@5.40.1-6
no fix listed
1
vcnngr/telegram-login:latest1a849a997b6d
perl@5.36.0-7+deb12u2
no fix listed
1
vcnngr/telegram-rebot:latest30f1f05e57a6
perl@5.36.0-7+deb12u2
no fix listed
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
perl@5.36.0-7+deb12u2
no fix listed
1
venturenox/redis:latest83b471c193ba
perl@5.36.0-7+deb12u1
no fix listed
1
vexorian/dizquetv:1.4.37e2b99844a5c
perl@5.26.1-6ubuntu0.5
no fix listed
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
perl@5.26.1-6ubuntu0.5
no fix listed
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
perl@5.26.1-6ubuntu0.6
no fix listed
1
viniciusfcf/gitops-quarkus-app-jvm:latestbba8ee1b5cd5
perl@0:1.28-420.el8
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-1.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
0:1.30-474.module+el8.10.0+24099+8aa2f756
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
1
visualregressiontracker/api:5.0.11941aeb8c8bf9
perl@5.36.0-7+deb12u1
no fix listed
1
vividplanet/swr-cache-proxy:v1ae1c5b1cbecb
perl@0:1.28-422.el8
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Data-Dumper@2.167-399.el8
perl-Digest@1.17-395.el8
perl-Digest-MD5@2.55-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-2.el8
perl-IO-Socket-IP@0.39-5.el8
perl-libnet@3.11-3.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
perl-URI@1.73-3.el8
0:1.30-474.module+el8.10.0+24099+8aa2f756
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
0:2.174-440.module+el8.10.0+21354+3ad137bb
0:1.20-1.module+el8.10.0+21354+3ad137bb
0:2.58-1.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:0.41-2.module+el8.10.0+21354+3ad137bb
0:3.13-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
0:1.76-5.module+el8.10.0+21354+3ad137bb
1
vlebediantsev/notes-admin-front:latest007c6670ff48
perl@5.36.0-7
no fix listed
1
vlebediantsev/notes-project-front:latest945675fd2636
perl@5.36.0-7
no fix listed
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
perl@5.36.0-7
no fix listed
1
voltha/bbsim:1.16.7d90403d58016
perl@5.26.1-6ubuntu0.7
no fix listed
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
perl@5.26.1-6ubuntu0.7
no fix listed
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
perl@5.26.1-6ubuntu0.7
no fix listed
1
voltha/voltha-cli:1.6.0c4e41e92f046
perl@5.22.1-9ubuntu0.5
no fix listed
1
voltha/voltha-envoy:1.6.059ab2a00f712
perl@5.18.2-2ubuntu1.1
no fix listed
1
voltha/voltha-netconf:1.6.037f80524c207
perl@5.22.1-9ubuntu0.5
no fix listed
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
perl@5.22.1-9ubuntu0.5
no fix listed
1
voltha/voltha-onos:5.1.8e038acb950d3
perl@5.26.1-6ubuntu0.3
no fix listed
1
voltha/voltha-tester:1.7.0655c3048a602
perl@5.22.1-9ubuntu0.6
no fix listed
1
voltha/voltha-voltha:1.6.0ff596b62de59
perl@5.22.1-9ubuntu0.5
no fix listed
1
wallarm/aih-scanner:2.7.11f1cb26db1f5b
perl@5.40.1-6
no fix listed
1
wallarm/api-gateway:0.2.0a3d4d2f780e8
perl@5.36.0-7+deb12u3
no fix listed
1
wallarm/gateway-controller:0.4.09c6ed23e2f0e
perl@5.40.1-6
no fix listed
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
perl@5.30.0-9ubuntu0.3
no fix listed
1
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
perl@5.36.0-7
no fix listed
1
wateim/lighthouse-launch:latest2520149ee574
perl@5.34.0-3ubuntu1.3
no fix listed
1
wavefronthq/proxy:9.2d1064d28f6eb
perl@5.26.1-6ubuntu0.3
no fix listed
1
wazuh/wazuh-dashboard:4.4.11787550d2358
perl@5.30.0-9ubuntu0.3
no fix listed
1
wazuh/wazuh-manager:4.4.121994f40e0da
perl@5.30.0-9ubuntu0.3
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.