StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,411
of 17,803 indexed, latest versions
Container images
2,391
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,411 of 17,803 indexed charts deploy, on 2,391 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+47 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,370
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,411 by stars
ChartLatestAffected imagesRadar Score
fluentd-kubernetes-daemonsetnovum-rgi-charts0.1.01 of 1See more

fluentd-kubernetes-daemonset novum-rgi-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1-debian-graylogfda93f768f98
perl@5.40.1-6
no fix listed

Open the chart page →

1,048
example-dev-toolsnoygal0.2.82 of 3See more

example-dev-tools noygal 0.2.8

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
perl@5.26.1-6ubuntu0.5
no fix listed
linuxserver/codimd:latestb801bbcf6386
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

27,560
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

91,000
cloakbrowser-mcpobeoneVerified publisher0.3.11 of 1See more

cloakbrowser-mcp obeone 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,321
firecrawlobeoneVerified publisher3.0.63 of 5See more

firecrawl obeone 3.0.6

3 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/firecrawl/firecrawl:2.11.349ddbbb3023fea
perl@5.36.0-7+deb12u3
no fix listed
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
perl@5.40.1-6
no fix listed
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

10,311
libretranslateobeoneVerified publisher1.0.71 of 1See more

libretranslate obeone 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
libretranslate/libretranslate:v1.9.61de2d7056bb8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

2,045
ollamaobeoneVerified publisher0.3.11 of 2See more

ollama obeone 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
perl@5.40.1-6
no fix listed

Open the chart page →

1,120
olvid-botobeoneVerified publisher0.3.31 of 1See more

olvid-bot obeone 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
olvid/bot-daemon:2.0.1e0e6b165d879
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,107
parcelapp-mcpobeoneVerified publisher0.1.01 of 1See more

parcelapp-mcp obeone 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
perl@5.40.1-6
no fix listed

Open the chart page →

891
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
perl@5.40.1-6
no fix listed

Open the chart page →

1,211
lensoci-ai-incubations0.1.141 of 16See more

lens oci-ai-incubations 0.1.14

1 of the 16 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
perl@5.40.1-6
no fix listed

Open the chart page →

17,257
octantisoctantis0.1.01 of 1See more

octantis octantis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/vinny1892/octantis:latest45459c0910fc
perl@5.40.1-6
no fix listed

Open the chart page →

2,618
mockoidcoidcmockVerified publisher0.0.11 of 1See more

mockoidc oidcmock 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
marcoimme/oidcmock:latestb6035c0721a8
perl@5.40.1-6
no fix listed

Open the chart page →

2,347
web-chartoje-ktcloudlab0.1.01 of 1See more

web-chart oje-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,879
ojp-serverojp0.1.51 of 1See more

ojp-server ojp 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
rrobetti/ojp:0.1.0-beta1141bd88232b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,652
automx2oleds-helm-chartsVerified publisher1.0.51 of 1See more

automx2 oleds-helm-charts 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
oled01/automx2:2025.1.105d3e398e675
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

5,385
cmsmsoleds-helm-chartsVerified publisher0.1.61 of 1See more

cmsms oleds-helm-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.7-debian-12-r290dc6acb7b2e
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

2,899
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
perl@5.34.0-3ubuntu1.1
no fix listed

Open the chart page →

8,146
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

9,237
laravel-appoli-the-devVerified publisher2.0.171 of 1See more

laravel-app oli-the-dev 2.0.17

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
perl@5.40.1-6
no fix listed

Open the chart page →

2,860
node-appoli-the-devVerified publisher1.0.01 of 1See more

node-app oli-the-dev 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/node:22-bookworm-slim83f487e0a634
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,198
paperless-ngxoli-the-devVerified publisher1.1.11 of 1See more

paperless-ngx oli-the-dev 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
perl@5.40.1-6
no fix listed

Open the chart page →

4,679
cron-jobonechart-slVerified publisher0.73.71 of 1See more

cron-job onechart-sl 0.73.7

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/debian:stable-slim04634311a8d5
perl@5.40.1-6
no fix listed

Open the chart page →

1,004
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4

Open the chart page →

6,148
ontoserverontoserverVerified publisher0.5.21 of 2See more

ontoserver ontoserver 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
perl@5.40.1-6
no fix listed

Open the chart page →

1,686
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
perl@5.36.0-7
no fix listed

Open the chart page →

9,723
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,674
jobopen-charts2.0.01 of 1See more

job open-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
perl@5.40.1-7ubuntu0.1
no fix listed

Open the chart page →

753
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
perl@5.26.1-6ubuntu0.7
no fix listed

Open the chart page →

3,918
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
perl@5.26.1-6ubuntu0.7
no fix listed

Open the chart page →

3,731
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
perl@5.26.1-6ubuntu0.3
no fix listed
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

63,720
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
perl@5.22.1-9ubuntu0.6
no fix listed
omecproject/onos-progran:1.0.05715e5648aa0
perl@5.22.1-9ubuntu0.2
no fix listed
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

251,005
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
perl@5.26.1-6
no fix listed

Open the chart page →

8,187
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

79,687
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

15,745
mcord-cdn-remoteopencord0.1.62 of 2See more

mcord-cdn-remote opencord 0.1.6

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
no fix listed
woojoong/wowza:latestec230db19652
perl@5.26.1-6ubuntu0.2
no fix listed

Open the chart page →

43,042
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

29,517
mcord-control-planeopencord0.2.22 of 5See more

mcord-control-plane opencord 0.2.2

2 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mme:mwca-mme-debug8dd6dea45be4
perl@5.22.1-9ubuntu0.5
no fix listed
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
perl@5.26.1-6
no fix listed

Open the chart page →

15,929
oaisimopencord0.1.72 of 3See more

oaisim opencord 0.1.7

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/lte-softmodem:1.1.0b5ddd36ec20c
perl@5.26.1-6ubuntu0.3
no fix listed
omecproject/lte-uesoftmodem:1.1.0686f8bc37d8c
perl@5.26.1-6ubuntu0.5
no fix listed

Open the chart page →

14,819
omec-control-planeopencord0.1.315 of 8See more

omec-control-plane opencord 0.1.31

5 of the 8 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
omecproject/c3po-hss:master-latest638671ef4842
perl@5.22.1-9ubuntu0.9
no fix listed
omecproject/c3po-hssdb:master-latest28a90cc26716
perl@5.30.0-9ubuntu0.2
no fix listed
omecproject/mme-exporter:paging-latestbcc5f19fd676
perl@5.26.1-6ubuntu0.3
no fix listed
omecproject/ngic-cp:central-cp-multi-upfs-latest24a389a0a4fe
perl@5.26.1-6ubuntu0.3
no fix listed
omecproject/openmme:master-latest64776cb9edb3
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

104,037
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

12,942
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
perl@5.22.1-9ubuntu0.2
no fix listed

Open the chart page →

94,372
ovspluginopencord1.0.21 of 1See more

ovsplugin opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
gopinatht/ovs-plugin-installer:latest632cb2e9c399
perl@5.22.1-9ubuntu0.3
no fix listed

Open the chart page →

4,183
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
perl@5.22.1-9ubuntu0.6
no fix listed

Open the chart page →

65,092
sebaopencord1.0.06 of 17See more

seba opencord 1.0.0

6 of the 17 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
perl@5.22.1-9ubuntu0.2
no fix listed
voltha/voltha-cli:1.6.0c4e41e92f046
perl@5.22.1-9ubuntu0.5
no fix listed
voltha/voltha-envoy:1.6.059ab2a00f712
perl@5.18.2-2ubuntu1.1
no fix listed
voltha/voltha-netconf:1.6.037f80524c207
perl@5.22.1-9ubuntu0.5
no fix listed
voltha/voltha-ofagent:1.6.09ee8c1f4428c
perl@5.22.1-9ubuntu0.5
no fix listed
voltha/voltha-voltha:1.6.0ff596b62de59
perl@5.22.1-9ubuntu0.5
no fix listed

Open the chart page →

356,120
voltha-infraopencord2.14.04 of 10See more

voltha-infra opencord 2.14.0

4 of the 10 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
perl@5.26.1-6ubuntu0.3
no fix listed
library/ubuntu:16.041f1a2d56de1d
perl@5.22.1-9ubuntu0.9
no fix listed
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
perl@5.26.1-6ubuntu0.7
no fix listed
voltha/voltha-onos:5.1.8e038acb950d3
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

41,148
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

11,088
dokuopenlit0.1.41 of 3See more

doku openlit 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latestfa394da808cc
perl@5.34.0-3ubuntu1.7
no fix listed

Open the chart page →

1,748
openlitopenlit1.24.01 of 3See more

openlit openlit 1.24.0

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.4.12e6587b81a26
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

5,220
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,412

Container images carrying it

2,391 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
perl@5.34.0-3ubuntu1
no fix listed
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.4-thick3c20900b5381
perl@5.40.1-6
no fix listed
1
ghcr.io/k8snetworkplumbingwg/multus-cni:latest-thickb2136983532b
perl@5.40.1-6
no fix listed
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/klicktipp/csa-exporter:0.3.12c69513f9d85
perl@5.40.1-6
no fix listed
1
ghcr.io/klicktipp/snds-exporter:v0.2.4a23b389cb3c5
perl@5.40.1-6
no fix listed
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
perl@5.26.1-6ubuntu0.6
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
perl@5.30.0-9ubuntu0.5
no fix listed
1
ghcr.io/kubelauncher/cassandrab66aba320083
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/etcd8ab954711fb9
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/kafka43e1085cd0a8
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/keycloakafe3bd73d7cf
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/kubectl7280594a2f18
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/mariadbe25056a6ec52
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/memcachedb599ca6b3ff3
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/mongodb9bc37ed78a8b
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/mysqle9609bd50416
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/openldap8978aa002bc0
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/kubelauncher/postgresql1a27e11e5925
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/rabbitmqff5a36a457f1
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/kubelauncher/redisbcd8e9a6224f
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubelauncher/zookeeper7826e9caa461
perl@5.40.1-7ubuntu0.1
no fix listed
1
ghcr.io/kubenetworks/kubevpn:v2.11.93feb9da85270
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
perl@5.40.1-6
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
perl@5.40.1-6
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
perl@5.30.0-9ubuntu0.2
no fix listed
1
ghcr.io/lambdaclass/ethrex:latest0c7896f060d6
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
perl@5.36.0-7
no fix listed
1
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
perl@5.38.2-3.2build2
5.38.2-3.2ubuntu0.4
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
perl@5.36.0-7+deb12u1
no fix listed
1
ghcr.io/libretime/icecast:latest3c98b92e9535
perl@5.40.1-6
no fix listed
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
perl@5.36.0-7+deb12u3
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
perl@5.26.1-6ubuntu0.5
no fix listed
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
perl@5.38.2-3.2ubuntu0.3
5.38.2-3.2ubuntu0.4
1
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
perl@5.34.0-3ubuntu1
no fix listed
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
perl@5.26.1-6ubuntu0.5
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.