StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,386
of 17,792 indexed, latest versions
Container images
2,351
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,386 of 17,792 indexed charts deploy, on 2,351 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+46 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,330
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,386 by stars
ChartLatestAffected imagesRadar Score
flame-rollupastria0.1.31 of 2See more

flame-rollup astria 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,710
graph-nodeastria0.2.22 of 3See more

graph-node astria 0.2.2

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
graphprotocol/graph-node:latestb0436347fb24
perl@5.36.0-7+deb12u1
no fix listed
library/postgres:latest4ef4dbc939d6
perl@5.40.1-6
no fix listed

Open the chart page →

5,547
hermesastria0.7.11 of 1See more

hermes astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

1,996
hyperlane-agentsastria0.1.41 of 2See more

hyperlane-agents astria 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

2,540
sequencerastria4.0.01 of 3See more

sequencer astria 4.0.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,335
sequencer-relayerastria2.0.01 of 1See more

sequencer-relayer astria 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,952
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,429
auth0-operatorauth0-operator1.4.121 of 1See more

auth0-operator auth0-operator 1.4.12

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/alethic/auth0-operator-image:1.4.122468990a8521
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

738
autopushautopushVerified publisher0.0.493 of 4See more

autopush autopush 0.0.49

3 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2c123e3715db6
perl@5.40.1-6
no fix listed
ghcr.io/wrenix/autopush-rs/autoconnect:1.84.285f93ced88b2
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/wrenix/autopush-rs/autoendpoint:1.84.2d95e9a124eed
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,995
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
perl@5.34.0-3ubuntu1.1
no fix listed

Open the chart page →

6,958
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
perl@5.36.0-7
no fix listed

Open the chart page →

6,321
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

7,176
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
perl@5.36.0-7+deb12u1
no fix listed
kuzwolka/aws9:news3e8880fbbb96
perl@5.36.0-7+deb12u1
no fix listed
kuzwolka/aws9:blog4a7707410bf1
perl@5.36.0-7+deb12u1
no fix listed
kuzwolka/aws9:shop84a9d9766345
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

18,436
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
perl@5.40.1-6
no fix listed

Open the chart page →

3,031
azp-agentazp-agent1.2.01 of 1See more

azp-agent azp-agent 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
cheveo/azp-agent:1.0.282240f890884
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

3,310
azure-voteazure-sample0.1.11 of 2See more

azure-vote azure-sample 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
perl@5.40.1-6
no fix listed

Open the chart page →

5,248
ragflowbaboulinet0.1.12 of 5See more

ragflow baboulinet 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
infiniflow/infinity:v0.7.0992c87a68612
perl@5.34.0-3ubuntu1.5
no fix listed
valkey/valkey:83fbd2e3e4b6e
perl@5.40.1-6
no fix listed

Open the chart page →

5,894
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
perl@5.40.1-6
no fix listed

Open the chart page →

2,760
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
perl@5.36.0-7
no fix listed

Open the chart page →

6,321
bookinfobasictechno0.1.03 of 6See more

bookinfo basictechno 0.1.0

3 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.17.0b8f16a765eea
perl@5.30.0-9ubuntu0.2
no fix listed
istio/examples-bookinfo-reviews-v2:1.17.072f25a55f078
perl@5.30.0-9ubuntu0.2
no fix listed
istio/examples-bookinfo-reviews-v3:1.17.08f92fc1b6592
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

20,794
my-nginx-appbassant-nginx-app0.1.01 of 1See more

my-nginx-app bassant-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
perl@5.40.1-6
no fix listed

Open the chart page →

4,059
wyoming-piperbdclark-helm-chartsVerified publisher0.1.41 of 1See more

wyoming-piper bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.5.27d39aafac409
perl@5.40.1-6
no fix listed

Open the chart page →

1,202
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
fosrl/pangolin:latest83a55f933b4d
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,923
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:771da9275c5f3
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,750
pagesberrutig-pages1.0.02 of 3See more

pages berrutig-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,242
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

7,246
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

5,117
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

8,029
mx-notifierbicarus-labs1.1.91 of 1See more

mx-notifier bicarus-labs 1.1.9

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bicarus/mx-notifier:1.1.8bed688d16762
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

3,763
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

22,929
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

10,225
bdbablackduck2026.6.35 of 9See more

bdba blackduck 2026.6.3

5 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
blackducksoftware/bdba-fluentd:2026.6.3c14bbbf45536
perl@5.40.1-6
no fix listed
blackducksoftware/bdba-frontend:2026.6.3b10eaea94fd3
perl@5.40.1-6
no fix listed
library/memcached:1.6.42-trixiee2a8683c7fbb
perl@5.40.1-6
no fix listed
library/postgres:15.18-bookworme8db9bd3e9e1
perl@5.36.0-7+deb12u3
no fix listed
library/rabbitmq:4.2.87561d672fae4
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

9,667
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

13,517
bluespacebluespace0.3.01 of 1See more

bluespace bluespace 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
bnkrbnkr1.0.51 of 2See more

bnkr bnkr 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
engrmth/bnkr:2.1.06d8464e6f0e8
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

15,302
istio-bookinfobookinfo1.2.23 of 6See more

istio-bookinfo bookinfo 1.2.2

3 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.15.040e8aba77c1b
perl@5.22.1-9ubuntu0.6
no fix listed
istio/examples-bookinfo-reviews-v2:1.15.0e86d247b7ac2
perl@5.22.1-9ubuntu0.6
no fix listed
istio/examples-bookinfo-reviews-v3:1.15.0e454cab754cf
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

19,006
colosseumbook-k8sinfra-v21.0.184 of 5See more

colosseum book-k8sinfra-v2 1.0.18

4 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-agg:logbc25b152d88e
perl@5.34.0-3ubuntu1.7
no fix listed
sysnet4admin/colosseum-cms:loge74b43c7f492
perl@5.36.0-7+deb12u2
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
perl@5.36.0-7+deb12u2
no fix listed
sysnet4admin/colosseum-rwd:log74ded2d92f07
perl@5.40.1-6
no fix listed

Open the chart page →

27,215
csi-driver-nfsbook-k8sinfra-v24.12.11 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

1 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,289
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
perl@5.34.0-3ubuntu1.3
no fix listed
library/cassandra:3.11.65aa8400b4b3b
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

19,311
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

8,339
flaresolverrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

flaresolverr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

27,554
tenantsbrbarmex-tenant2.0.01 of 1See more

tenants brbarmex-tenant 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
pagesbrian-pages1.0.02 of 3See more

pages brian-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,242
pagesbrixton-mayuribhavsar23-pages1.0.02 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,242
pagesbrixton-pages1.0.02 of 3See more

pages brixton-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,242
ombibryanalves0.4.01 of 1See more

ombi bryanalves 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

10,785
plexbryanalves0.5.01 of 1See more

plex bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

6,749
tautullibryanalves0.1.01 of 1See more

tautulli bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
tautulli/tautulli:latest670e68dd9efc
perl@5.40.1-6
no fix listed

Open the chart page →

1,929
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

14,513

Container images carrying it

2,351 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
perl@5.40.1-6
no fix listed
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
perl@5.34.0-3ubuntu1.1
no fix listed
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
perl@5.34.0-3ubuntu1.4
no fix listed
1
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
perl@5.40.1-6
no fix listed
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/getsentry/snuba:26.7.210f8d164109b
perl@5.40.1-6
no fix listed
1
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
perl@5.40.1-6
no fix listed
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
perl@5.40.1-6
no fix listed
1
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
perl@5.40.1-6
no fix listed
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
perl@5.40.1-6
no fix listed
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
perl@5.40.1-6
no fix listed
1
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
perl@5.40.1-6
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/grycap/im:latest06a16d4f279f
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/hemslo/chat-search:latest39d48995a5bd
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
perl@5.40.1-6
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/icoretech/codex-pooler:0.7.81bebc7e4a770
perl@5.40.1-6
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
perl@5.40.1-6
no fix listed
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
perl@5.40.1-6
no fix listed
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
perl@5.40.1-6
no fix listed
1
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
perl@5.34.0-3ubuntu1.7
no fix listed
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
perl@5.34.0-3ubuntu1.4
no fix listed
1
ghcr.io/itobey/playlist-mirror:1.0.0601082677a46
perl@5.40.1-6
no fix listed
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
perl@5.36.0-7+deb12u2
no fix listed
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
perl@5.40.1-6
no fix listed
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
perl@5.26.1-6ubuntu0.7
no fix listed
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
perl@5.36.0-7+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.