StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,411
of 17,792 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,411 of 17,792 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+47 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,370
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,411 by stars
ChartLatestAffected imagesRadar Score
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

6,960
opikopikOfficialVerified publisher2.2.662 of 13See more

opik opik 2.2.66

2 of the 13 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
perl@5.34.0-3ubuntu1.5
no fix listed
redis/redis-stack-server:7.2.0-v10e44b2b49d059
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

14,454
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
perl@5.34.0-3ubuntu1.7
no fix listed
shaowenchen/ops-server:latest315444f703f4
perl@5.34.0-3ubuntu1.5
no fix listed

Open the chart page →

9,214
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
perl@5.40.1-6
no fix listed

Open the chart page →

3,735
paperless-ngxpaperlessVerified publisher0.4.03 of 3See more

paperless-ngx paperless 0.4.0

3 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
perl@5.36.0-7+deb12u2
no fix listed
valkey/valkey:9.0.54c64dfeae602
perl@5.40.1-6
no fix listed
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
perl@5.40.1-6
no fix listed

Open the chart page →

8,591
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,897
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

4,743
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
perl@5.40.1-6
no fix listed

Open the chart page →

7,160
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
perl@5.34.0-3ubuntu1
no fix listed

Open the chart page →

7,632
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,861
matomopockostVerified publisher1.3.03 of 3See more

matomo pockost 1.3.0

3 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
perl@5.40.1-6
no fix listed

Open the chart page →

5,230
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
perl@5.30.0-9ubuntu0.2
no fix listed
treskon/portrait:DEV-latest88e813f22347
perl@5.40.1-7ubuntu0.1
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

32,112
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
no fix listed

Open the chart page →

1,667
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
perl@5.40.1-6
no fix listed

Open the chart page →

2,498
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

5,503
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
perl@5.40.1-6
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

8,367
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

3,239
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

24,012
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
perl@5.34.0-3ubuntu1.1
no fix listed

Open the chart page →

6,914
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

2,838
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

7,519
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

2,683
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
perl@5.40.1-6
no fix listed

Open the chart page →

4,284
reportportalreportportal-ioOfficialVerified publisher26.8.123 of 15See more

reportportal reportportal-io 26.8.12

3 of the 15 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
perl@5.36.0-7+deb12u2
no fix listed
library/postgres:18.4a02db8cac496
perl@5.40.1-6
no fix listed
library/rabbitmq:4.3.4-managementeb5295d08332
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4

Open the chart page →

12,026
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

7,510
retyc-csiretyc-csi0.2.01 of 3See more

retyc-csi retyc-csi 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
perl@5.40.1-6
no fix listed

Open the chart page →

1,380
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,595
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,932
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

10,175
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

4,721
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,562
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

6,097
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

7,909
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

6,932
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,691
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
perl@5.30.0-9ubuntu0.3
no fix listed

Open the chart page →

7,579
postgresromanow-helm-chartsVerified publisher1.7.11 of 1See more

postgres romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
perl@5.40.1-6
no fix listed

Open the chart page →

1,667
routehub-client-hubroutehub-helm1.0.02 of 3See more

routehub-client-hub routehub-helm 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
perl@5.30.0-9ubuntu0.4
no fix listed
timescale/timescaledb-ha:pg16d7db8f1085a3
perl@5.34.0-3ubuntu1.8
no fix listed

Open the chart page →

13,046
rstmdbrstmdb0.2.01 of 1See more

rstmdb rstmdb 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
rstmdb/rstmdb:lateste5187f2aaace
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,079
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
perl@5.40.1-6
no fix listed

Open the chart page →

3,959
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

5,350
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

13,590
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
perl@5.36.0-7+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

30,468
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
perl@5.34.0-3ubuntu1.2
no fix listed
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
perl@5.34.0-3ubuntu1.2
no fix listed
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

11,052
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

38,479
teamcityscalified-teamcityVerified publisher2026.2.01 of 3See more

teamcity scalified-teamcity 2026.2.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
perl@5.40.1-6
no fix listed

Open the chart page →

1,667
sceptresceptreai0.1.122 of 5See more

sceptre sceptreai 0.1.12

2 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
perl@5.40.1-6
no fix listed
maponyacharles/sceptreai:api-0.1.127b37b092130a
perl@5.40.1-6
no fix listed

Open the chart page →

4,424
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

2,194
searxngsearxngVerified publisher0.1.111 of 3See more

searxng searxng 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-trixie64e361b630ec
perl@5.40.1-6
no fix listed

Open the chart page →

836
securosecuroVerified publisher0.15.12 of 4See more

securo securo 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
pgvector/pgvector:pg16ccc6e83d6e35
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/securo-finance/securo-backend:0.15.162e030110745
perl@5.40.1-6
no fix listed

Open the chart page →

3,561

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
perl@5.34.0-3ubuntu1
no fix listed
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.4-thick3c20900b5381
perl@5.40.1-6
no fix listed
1
ghcr.io/k8snetworkplumbingwg/multus-cni:latest-thickb2136983532b
perl@5.40.1-6
no fix listed
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/klicktipp/csa-exporter:0.3.12c69513f9d85
perl@5.40.1-6
no fix listed
1
ghcr.io/klicktipp/snds-exporter:v0.2.4a23b389cb3c5
perl@5.40.1-6
no fix listed
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
perl@5.26.1-6ubuntu0.6
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/kubelauncher/cassandrab66aba320083
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/etcd8ab954711fb9
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/kafka43e1085cd0a8
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/keycloakafe3bd73d7cf
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/kubectl7280594a2f18
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/mariadbe25056a6ec52
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/memcachedb599ca6b3ff3
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/mongodb9bc37ed78a8b
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/mysqle9609bd50416
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/openldap8978aa002bc0
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/kubelauncher/postgresql1a27e11e5925
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/rabbitmqff5a36a457f1
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/kubelauncher/redisbcd8e9a6224f
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/zookeeper7826e9caa461
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubenetworks/kubevpn:v2.11.81d953f6ba31c
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
perl@5.40.1-6
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
perl@5.40.1-6
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/lambdaclass/ethrex:latest0c7896f060d6
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
perl@5.36.0-7
no fix listed
1
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/libretime/icecast:latest3c98b92e9535
perl@5.40.1-6
no fix listed
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
perl@5.26.1-6ubuntu0.5
no fix listed
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
perl@5.34.0-3ubuntu1
no fix listed
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
perl@5.26.1-6ubuntu0.5
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.