StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,411
of 17,803 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,411 of 17,803 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+47 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,370
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,411 by stars
ChartLatestAffected imagesRadar Score
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

11,913
web-chartimcherry57780.1.01 of 1See more

web-chart imcherry5778 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,879
onechartimioVerified publisher0.76.01 of 1See more

onechart imio 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,879
plausible-analyticsimioVerified publisher0.4.23 of 5See more

plausible-analytics imio 0.4.2

3 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/clickhouse:24.12.3-debian-12-r13cf6544f6c6c
perl@5.36.0-7+deb12u1
no fix listed
bitnamilegacy/clickhouse:24.12.4c7e70bf1d3fb
perl@5.36.0-7+deb12u1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

10,763
smtp4devimioVerified publisher0.1.11 of 1See more

smtp4dev imio 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
rnwood/smtp4dev:3.6.1912304153668
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,242
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

3,365
kore-boardimprowisedVerified publisher0.5.81 of 4See more

kore-board improwised 0.5.8

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
perl@5.26.1-6ubuntu0.6
no fix listed

Open the chart page →

16,377
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

5,378
pgcatimprowisedVerified publisher0.1.01 of 1See more

pgcat improwised 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,824
proxysqlimprowisedVerified publisher1.0.01 of 1See more

proxysql improwised 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
improwised/proxysql:master-6b26e59-171765063828940522e8b7
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,536
impulseimpulse1.0.161 of 1See more

impulse impulse 1.0.16

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/eslupmi/impulse:v3.7.03ded1b7ebca0
perl@5.40.1-6
no fix listed

Open the chart page →

1,396
infisicalinfisical-charts0.4.21 of 3See more

infisical infisical-charts 0.4.2

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
infisical/infisical:latest02082bf13163
perl@5.40.1-6
no fix listed

Open the chart page →

3,085
influxdb3-coreinfluxdata0.1.11 of 1See more

influxdb3-core influxdata 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/influxdb:3.10.5-core695a8063ff10
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

864
influxdb3-enterpriseinfluxdata0.12.01 of 1See more

influxdb3-enterprise influxdata 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/influxdb:3.11.2-enterprise6ce2bf22499b
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

845
influxdb-enterpriseinfluxdata0.2.12 of 2See more

influxdb-enterprise influxdata 0.2.1

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/influxdb:1.12.3-meta8812029260b5
perl@5.36.0-7+deb12u3
no fix listed
library/influxdb:1.12.3-datab0f9fc41ed79
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,026
influxdbinfluxdb20.1.01 of 1See more

influxdb influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/influxdb:latestf75e48af0598
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,383
ai-stackinfracloud-chartsVerified publisher0.6.01 of 3See more

ai-stack infracloud-charts 0.6.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
perl@5.40.1-6
no fix listed

Open the chart page →

1,317
chromadbinfracloud-chartsVerified publisher0.3.01 of 1See more

chromadb infracloud-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
perl@5.40.1-6
no fix listed

Open the chart page →

1,317
guardrails-usvcinfracloud-chartsVerified publisher1.0.11 of 1See more

guardrails-usvc infracloud-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
opea/guardrails-tgi:latestf68bec6a1271
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,120
erigoninfradao0.0.51 of 2See more

erigon infradao 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
testinprod/op-erigon:latest0a125bd77a2d
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,924
op-stackinfradao0.0.11 of 1See more

op-stack infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,879
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

10,583
gmaintelVerified publisher0.1.01 of 1See more

gma intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

71,556
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

84,573
map5gintelVerified publisher1.0.01 of 1See more

map5g intel 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

71,556
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

77,320
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

6,010
intelowlintelowl-helm6.6.1-01-06-20262 of 5See more

intelowl intelowl-helm 6.6.1-01-06-2026

2 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
intelowlproject/intelowl:v6.6.10b22e547ea6b
perl@5.36.0-7+deb12u1
no fix listed
library/redis:8.6.34d25e2fe601f
perl@5.40.1-6
no fix listed

Open the chart page →

18,066
interbtc-parachaininterlay0.4.131 of 1See more

interbtc-parachain interlay 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
interlayhq/interbtc:latesta66d0e35e70f
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

3,208
interbtc-vaultinterlay0.1.131 of 1See more

interbtc-vault interlay 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
interlayhq/interbtc-clients:vault-masterc3e311de67da
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

3,886
polkabtc-parachaininterlay0.2.411 of 4See more

polkabtc-parachain interlay 0.2.41

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
interlayhq/interbtc:latesta66d0e35e70f
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

3,951
polkabtc-vaultinterlay0.1.111 of 1See more

polkabtc-vault interlay 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
interlayhq/interbtc-clients:vault-masterc3e311de67da
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

3,886
inventreeinventreeOfficialVerified publisher0.4.282 of 2See more

inventree inventree 0.4.28

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
inventree/inventree:1.5.4a946ec09da3e
perl@5.40.1-6
no fix listed
library/nginx:stabled5792f71a949
perl@5.40.1-6
no fix listed

Open the chart page →

5,920
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

5,590
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

5,590
istio-bookinfoistio-bookinfo1.2.23 of 6See more

istio-bookinfo istio-bookinfo 1.2.2

3 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.15.040e8aba77c1b
perl@5.22.1-9ubuntu0.6
no fix listed
istio/examples-bookinfo-reviews-v2:1.15.0e86d247b7ac2
perl@5.22.1-9ubuntu0.6
no fix listed
istio/examples-bookinfo-reviews-v3:1.15.0e454cab754cf
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

19,058
ztunnelistio-ztunnelVerified publisher1.25.01 of 1See more

ztunnel istio-ztunnel 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/ztunnel:1.25.005f3972d80a9
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4

Open the chart page →

2,514
appswitcher-serverit-at-mOfficialVerified publisher2.0.21 of 1See more

appswitcher-server it-at-m 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
perl@5.34.0-3ubuntu1.4
no fix listed

Open the chart page →

3,819
daveit-at-mOfficialVerified publisher0.2.162 of 11See more

dave it-at-m 0.2.16

2 of the 11 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
perl@5.36.0-7+deb12u2
no fix listed
bitnamilegacy/postgresql:latest42a8200d3597
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

12,337
dynamic-ip-loadbalancer-controlleritsmethemojoVerified publisher0.1.01 of 1See more

dynamic-ip-loadbalancer-controller itsmethemojo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
perl@5.40.1-6
no fix listed

Open the chart page →

1,721
tekton-git-listeneritsmethemojoVerified publisher0.1.11 of 1See more

tekton-git-listener itsmethemojo 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/buildpack-deps:scmac978b783657
perl@5.40.1-6
no fix listed

Open the chart page →

2,219
thehiveittrident-oss0.1.02 of 6See more

thehive ittrident-oss 0.1.0

2 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/cassandra:4.0093ee8ee5eb2
perl@5.36.0-7+deb12u3
no fix listed
library/debian:stable-slim04634311a8d5
perl@5.40.1-6
no fix listed

Open the chart page →

6,331
opencloudjacobcolvinVerified publisher0.2.37 of 13See more

opencloud jacobcolvin 0.2.3

7 of the 13 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
perl@5.36.0-7+deb12u1
no fix listed
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
perl@5.36.0-7+deb12u1
no fix listed
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
perl@5.36.0-7+deb12u1
no fix listed
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
perl@5.36.0-7+deb12u1
no fix listed
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
perl@5.36.0-7+deb12u1
no fix listed
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

45,468
web-chartjaeeyun-ktcloudlab0.1.01 of 1See more

web-chart jaeeyun-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,879
nginx-chartjaeki-nginx0.1.01 of 1See more

nginx-chart jaeki-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,879
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

10,922
ghostjanip81-helm-chartsVerified publisher0.1.21 of 1See more

ghost janip81-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/ghost:6.37.01ef2e532ca4d
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

3,496
unifi-network-applicationjanip81-helm-chartsVerified publisher0.2.91 of 3See more

unifi-network-application janip81-helm-charts 0.2.9

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
perl@5.34.0-3ubuntu1.7
no fix listed

Open the chart page →

2,196
janus-shieldjanus-shield1.0.01 of 2See more

janus-shield janus-shield 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
seoulorigin/janus-ml-sidecar:v3.192cbaad0c540
perl@5.40.1-6
no fix listed

Open the chart page →

2,435
jasperjasperVerified publisher1.0.2032 of 2See more

jasper jasper 1.0.203

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
perl@5.36.0-7+deb12u2
no fix listed
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,273

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
perl@5.34.0-3ubuntu1.3
no fix listed
1
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/blockscout/smart-contract-verifier:main9a43f0cc5797
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
perl@5.30.0-9ubuntu0.3
no fix listed
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/camptocamp/pgbouncer:latest19dc5663cac4
perl@5.40.1-6
no fix listed
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
perl@5.34.0-3ubuntu1.3
no fix listed
1
ghcr.io/caninehq/canine:latesta058034ca006
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
perl@5.40.1-6
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/chroma-core/chroma:1.5.3cfd193653bd6
perl@5.40.1-6
no fix listed
1
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/cjmalloy/jasper-ui:v1.3.623246dc2160efe
perl@5.40.1-6
no fix listed
1
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
perl@5.40.1-6
no fix listed
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/containeroo/filesystem-exporter:v1.5.2a66121e16d4e
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
perl@5.40.1-6
no fix listed
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
perl@5.40.1-6
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/dakera-ai/dakera:0.11.101af610992a416
perl@5.40.1-6
no fix listed
1
ghcr.io/dakera-ai/dakera-mcp:0.10.11a3d48418b14a
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
perl@5.40.1-6
no fix listed
1
ghcr.io/danielgines/brightdata-exporter:0.2.176920d17cf6ff
perl@5.40.1-6
no fix listed
1
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
perl@5.40.1-6
no fix listed
1
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
perl@5.40.1-6
no fix listed
1
ghcr.io/dask/dask:2024.1.0080150de7d86
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
perl@5.40.1-6
no fix listed
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
perl@5.34.0-3ubuntu1.3
no fix listed
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/defguard/defguard:2.1.0df2e31d3b4f5
perl@5.40.1-6
no fix listed
1
ghcr.io/defguard/defguard-proxy:2.1.08765a28e383e
perl@5.40.1-6
no fix listed
1
ghcr.io/defguard/gateway:2.1.0738b2b6f413b
perl@5.40.1-6
no fix listed
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
perl@5.40.1-6
no fix listed
1
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
perl@5.40.1-6
no fix listed
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/deven96/ahnlich-db:latest45d8b5aab491
perl@5.40.1-6
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.