StackRadar

CVE-2026-9538

High

Advisory

Published 26 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,414
of 17,790 indexed, latest versions
Container images
2,398
deployed by those charts
Fix available
42 of 42
affected packages

Red Hat Security Advisory: perl:5.32 security update

Carried by container images the latest versions of 2,414 of 17,790 indexed charts deploy, on 2,398 images.

Affected packageAffected versionsFixed inImages
perldeb5.18.2-2ubuntu1, 5.18.2-2ubuntu1.1, 5.18.2-2ubuntu1.4, 5.18.2-2ubuntu1.7+47 more5.38.2-3.2ubuntu0.4, 5.40.1-6+e62,377
perlrpm0:1.28-416.el8, 0:1.28-417.el8_3, 0:1.28-419.el8_4.1, 0:1.28-420.el8+4 more0:1.30-474.module+el8.10.0+24099+8aa2f756, 0:5.74-474.module+el8.10.0+24099+8aa2f75619
perl-Carprpm1.42-396.el80:1.50-439.module+el8.10.0+21354+3ad137bb16
perl-constantrpm1.33-396.el80:1.33-1001.module+el8.10.0+21354+3ad137bb16
perl-Exporterrpm5.72-396.el80:5.74-458.module+el8.10.0+21354+3ad137bb16
perl-File-Pathrpm2.15-2.el80:2.16-439.module+el8.10.0+21354+3ad137bb16
perl-parentrpm1:0.237-1.el81:0.238-457.module+el8.10.0+21354+3ad137bb16
perl-PathToolsrpm3.74-1.el80:3.78-439.module+el8.10.0+21354+3ad137bb16
perl-Scalar-List-Utilsrpm3:1.49-2.el84:1.55-457.module+el8.10.0+21354+3ad137bb16
perl-Socketrpm4:2.027-3.el84:2.031-1.module+el8.10.0+21354+3ad137bb16
perl-Text-Tabs+Wraprpm2013.0523-395.el80:2013.0523-396.module+el8.10.0+21354+3ad137bb16
perl-threadsrpm1:2.21-2.el81:2.25-457.module+el8.10.0+21354+3ad137bb16
perl-threads-sharedrpm1.58-2.el80:1.61-457.module+el8.10.0+21354+3ad137bb16
perl-Unicode-Normalizerpm1.25-396.el80:1.27-458.module+el8.10.0+21354+3ad137bb16
perl-Encoderpm4:2.97-3.el84:3.08-461.module+el8.10.0+21354+3ad137bb15
perl-File-Temprpm0.230.600-1.el81:0.231.100-1.module+el8.10.0+21354+3ad137bb15
perl-Getopt-Longrpm1:2.50-4.el81:2.52-1.module+el8.10.0+21354+3ad137bb15
perl-HTTP-Tinyrpm0.074-1.el8, 0.074-1.el8_6.1, 0.074-2.el8, 0.074-2.el8_9.1+1 more0:0.078-1.module+el8.10.0+21354+3ad137bb15
perl-MIME-Base64rpm3.15-396.el80:3.15-1001.module+el8.10.0+21354+3ad137bb15
perl-Pod-Escapesrpm1:1.07-395.el81:1.07-396.module+el8.10.0+21354+3ad137bb15
perl-podlatorsrpm4.11-1.el81:4.14-457.module+el8.10.0+21354+3ad137bb15
perl-Pod-Perldocrpm3.28-396.el80:3.28.01-443.module+el8.10.0+21354+3ad137bb15
perl-Pod-Simplerpm1:3.35-395.el81:3.42-1.module+el8.10.0+21354+3ad137bb15
perl-Pod-Usagerpm4:1.69-395.el84:2.01-1.module+el8.10.0+21354+3ad137bb15
perl-Storablerpm1:3.11-3.el81:3.21-457.module+el8.10.0+21354+3ad137bb15
perl-Term-ANSIColorrpm4.06-396.el80:5.01-458.module+el8.10.0+21354+3ad137bb15
perl-Term-Caprpm1.17-395.el80:1.17-396.module+el8.10.0+21354+3ad137bb15
perl-Text-ParseWordsrpm3.30-395.el80:3.30-396.module+el8.10.0+21354+3ad137bb15
perl-Time-Localrpm1:1.280-1.el82:1.300-4.module+el8.10.0+21354+3ad137bb15
perl-Data-Dumperrpm2.167-399.el80:2.174-440.module+el8.10.0+21354+3ad137bb14
perl-Digestrpm1.17-395.el80:1.20-1.module+el8.10.0+21354+3ad137bb13
perl-Digest-MD5rpm2.55-396.el80:2.58-1.module+el8.10.0+21354+3ad137bb13
perl-IO-Socket-IPrpm0.39-5.el80:0.41-2.module+el8.10.0+21354+3ad137bb13
perl-libnetrpm3.11-3.el80:3.13-1.module+el8.10.0+21354+3ad137bb13
perl-URIrpm1.73-3.el80:1.76-5.module+el8.10.0+21354+3ad137bb13
perl-Archive-Tarrpm2.38-6.el9, 2.38-6.el9.0.10:2.38-6.el9_8.22
perl-Thread-Queuerpm3.13-1.el80:3.14-457.module+el8.10.0+21354+3ad137bb2
perl-Compress-Raw-Bzip2rpm2.081-1.el80:2.096-1.module+el8.10.0+21354+3ad137bb1
perl-Compress-Raw-Zlibrpm2.081-1.el80:2.096-2.module+el8.10.0+21354+3ad137bb1
perl-Digest-SHArpm1:6.02-1.el81:6.02-2.module+el8.10.0+21354+3ad137bb1
perl-Encode-Localerpm1.05-10.module+el8.3.0+6498+9eecfe510:1.05-10.module+el8.10.0+21354+3ad137bb1
perl-IO-Compressrpm2.081-1.el80:2.096-2.module+el8.10.0+24402+ce90c7a01
OSV records
DEBIAN-CVE-2026-9538RHSA-2026:48225RLSA-2026:49525UBUNTU-CVE-2026-9538ECHO-e379-3651-bf29
Also known as
USN-8684-1

Charts affected

2,414 by stars
ChartLatestAffected imagesRadar Score
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
perl@5.36.0-7
no fix listed

Open the chart page →

4,058
vaultwardenleprechaun-charts0.1.281 of 1See more

vaultwarden leprechaun-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.1ebdfe70701c6
perl@5.40.1-6
no fix listed

Open the chart page →

2,057
jackettlib42Verified publisher1.1.01 of 1See more

jackett lib42 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
lib42/jackett:latesta55596cda383
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

4,643
libredb-studiolibredb-studio-oci0.1.631 of 1See more

libredb-studio libredb-studio-oci 0.1.63

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
perl@5.40.1-6
no fix listed

Open the chart page →

1,244
librenmslibrenms10.1.11 of 5See more

librenms librenms 10.1.1

1 of the 5 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
no fix listed

Open the chart page →

3,149
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

4,459
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
perl@5.36.0-7+deb12u1
no fix listed
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

5,387
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

38,239
weblinzhengen0.1.71 of 1See more

web linzhengen 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
perl@5.40.1-6
no fix listed

Open the chart page →

3,091
pocketbase-halitesql0.0.31 of 1See more

pocketbase-ha litesql 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/litesql/pocketbase-ha:latestc5b28608958b
perl@5.40.1-6
no fix listed

Open the chart page →

1,138
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
perl@5.34.0-3ubuntu1.2
no fix listed

Open the chart page →

10,780
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
perl@5.30.0-9ubuntu0.2
no fix listed
flyway/flyway:6.4.422d97ceb0c47
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

20,242
web-chartljw-ktcloudlab0.1.01 of 1See more

web-chart ljw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
perl@5.40.1-6
no fix listed

Open the chart page →

12,150
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
perl@5.40.1-6
no fix listed

Open the chart page →

2,626
mt-mcp-grafanaloafoe0.10.01 of 2See more

mt-mcp-grafana loafoe 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

1,933
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

7,534
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

33,540
vnode-runtimeloftVerified publisher0.3.31 of 1See more

vnode-runtime loft 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
perl@5.34.0-3ubuntu1.7
no fix listed

Open the chart page →

2,518
nightingalelogic3579Verified publisher0.3.13 of 6See more

nightingale logic3579 0.3.1

3 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
flashcatcloud/nightingale:8.5.1421acb36181b
perl@5.40.1-6
no fix listed
library/redis:6.2143f7bfc2358
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

9,062
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

6,680
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

6,578
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

23,689
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

5,913
loxilbloxilbVerified publisher0.1.02 of 2See more

loxilb loxilb 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
perl@5.34.0-3ubuntu1.7
no fix listed
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
perl@5.34.0-3ubuntu1.7
no fix listed

Open the chart page →

4,513
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

5,074
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
perl@5.30.0-9ubuntu0.2
no fix listed

Open the chart page →

17,858
redislsst-sqre1.2.11 of 1See more

redis lsst-sqre 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
perl@5.40.1-6
no fix listed

Open the chart page →

978
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/redis:6.2143f7bfc2358
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

6,642
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
perl@5.26.1-6ubuntu0.3
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
perl@5.26.1-6ubuntu0.3
no fix listed
elastictranscoder/transcoder:627e21dcb4a0327029e6
perl@5.26.1-6ubuntu0.3
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
perl@5.26.1-6ubuntu0.3
no fix listed

Open the chart page →

58,245
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

27,554
plex-rclone-wireguardluiscajl1.0.191 of 2See more

plex-rclone-wireguard luiscajl 1.0.19

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
perl@5.40.1-7ubuntu0.1
no fix listed

Open the chart page →

854
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
perl@5.40.1-6
no fix listed

Open the chart page →

4,669
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
perl@5.40.1-6
no fix listed

Open the chart page →

2,626
kea-exporterm0nsterrr-kea-exporterVerified publisher2.2.11 of 1See more

kea-exporter m0nsterrr-kea-exporter 2.2.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
perl@5.40.1-6
no fix listed

Open the chart page →

1,067
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

9,805
magistralamagistrala-devopsVerified publisher0.16.22 of 42See more

magistrala magistrala-devops 0.16.2

2 of the 42 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31-latestcaa5b411be16
perl@5.34.0-3ubuntu1.4
no fix listed
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

24,537
docker-mailservermailserverVerified publisher0.2.651 of 9See more

docker-mailserver mailserver 0.2.65

1 of the 9 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
mvance/unbound:1.22.076906da36d18
perl@5.36.0-7+deb12u1
no fix listed

Open the chart page →

10,921
demoshopmakaira2.4.02 of 4See more

demoshop makaira 2.4.0

2 of the 4 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
no fix listed
library/php:8.4-fpm59fa733c9af6
perl@5.40.1-6
no fix listed

Open the chart page →

4,489
plane-mcp-servermakeplaneVerified publisher1.0.02 of 2See more

plane-mcp-server makeplane 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
makeplane/plane-mcp-server:v0.3.071b7252adef0
perl@5.40.1-6
no fix listed
valkey/valkey:9.1.164e361b630ec
perl@5.40.1-6
no fix listed

Open the chart page →

2,602
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
perl@5.36.0-7
no fix listed

Open the chart page →

7,334
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
perl@5.40.1-6
no fix listed

Open the chart page →

3,597
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
perl@5.30.0-9ubuntu0.5
no fix listed

Open the chart page →

4,152
nginxmatic-insurance1.1.11 of 1See more

nginx matic-insurance 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
perl@5.40.1-6
no fix listed

Open the chart page →

1,849
mauticmautic-chartVerified publisher1.0.22 of 3See more

mautic mautic-chart 1.0.2

2 of the 3 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
perl@5.36.0-7+deb12u1
no fix listed
mautic/mautic:7-apacheeb8cc73d97e1
perl@5.36.0-7+deb12u3
no fix listed

Open the chart page →

8,409
mayastormayastorVerified publisher2.12.12 of 31See more

mayastor mayastor 2.12.1

2 of the 31 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
perl@5.38.2-3.2build2.1
5.38.2-3.2ubuntu0.4
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
perl@5.36.0-7+deb12u2
no fix listed

Open the chart page →

21,269
eoloplantmca-eoloplaner0.1.03 of 7See more

eoloplant mca-eoloplaner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
hugohg34/toposervice:0.0.2812a03b3f274
perl@5.30.0-9ubuntu0.2
no fix listed
library/mongo:5.0.6-focal8e70544b6c76
perl@5.30.0-9ubuntu0.2
no fix listed
library/rabbitmq:3.9-management8a279e9396a8
perl@5.34.0-3ubuntu1.3
no fix listed

Open the chart page →

29,746
mcp-hangarmcp-hangarVerified publisher0.15.201 of 1See more

mcp-hangar mcp-hangar 0.15.20

1 of the 1 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
ghcr.io/mcp-hangar/mcp-hangar:2.19.14f92e139cd33
perl@5.40.1-6
no fix listed

Open the chart page →

829
mcroutermcrouterVerified publisher0.2.02 of 2See more

mcrouter mcrouter 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-9538.

Container imageDigestPackageFixed in
library/memcached:1.6.4226983a43c918
perl@5.40.1-6
no fix listed
ghcr.io/dragoangel/mcrouter:v2026.06.29.0042afcffe67d0
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4

Open the chart page →

2,306

Container images carrying it

2,398 by charts deploying them

A fixed version is listed for 42 of the 42 affected packages.

Container imageDigestPackageFixed inUsed by
apache/superset:4.0.1ab9467fd712c
perl@5.36.0-7+deb12u1
no fix listed
1
apache/tika:latest-full80072bb73dd3
perl@5.40.1-7ubuntu0.1
no fix listed
1
apache/tika:3.3.1.090b7fa1dc018
perl@5.40.1-7build1
no fix listed
1
apache/tika:2.9.0.092d055a84e9e
perl@5.34.0-3ubuntu1.1
no fix listed
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
perl@5.40.1-6
no fix listed
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
perl@0:1.28-419.el8_4.1
perl-Carp@1.42-396.el8
perl-constant@1.33-396.el8
perl-Encode@4:2.97-3.el8
perl-Exporter@5.72-396.el8
perl-File-Path@2.15-2.el8
perl-File-Temp@0.230.600-1.el8
perl-Getopt-Long@1:2.50-4.el8
perl-HTTP-Tiny@0.074-1.el8
perl-MIME-Base64@3.15-396.el8
perl-parent@1:0.237-1.el8
perl-PathTools@3.74-1.el8
perl-Pod-Escapes@1:1.07-395.el8
perl-Pod-Perldoc@3.28-396.el8
perl-Pod-Simple@1:3.35-395.el8
perl-Pod-Usage@4:1.69-395.el8
perl-podlators@4.11-1.el8
perl-Scalar-List-Utils@3:1.49-2.el8
perl-Socket@4:2.027-3.el8
perl-Storable@1:3.11-3.el8
perl-Term-ANSIColor@4.06-396.el8
perl-Term-Cap@1.17-395.el8
perl-Text-ParseWords@3.30-395.el8
perl-Text-Tabs+Wrap@2013.0523-395.el8
perl-threads@1:2.21-2.el8
perl-threads-shared@1.58-2.el8
perl-Time-Local@1:1.280-1.el8
perl-Unicode-Normalize@1.25-396.el8
0:1.30-474.module+el8.10.0+24099+8aa2f756
0:1.50-439.module+el8.10.0+21354+3ad137bb
0:1.33-1001.module+el8.10.0+21354+3ad137bb
4:3.08-461.module+el8.10.0+21354+3ad137bb
0:5.74-458.module+el8.10.0+21354+3ad137bb
0:2.16-439.module+el8.10.0+21354+3ad137bb
1:0.231.100-1.module+el8.10.0+21354+3ad137bb
1:2.52-1.module+el8.10.0+21354+3ad137bb
0:0.078-1.module+el8.10.0+21354+3ad137bb
0:3.15-1001.module+el8.10.0+21354+3ad137bb
1:0.238-457.module+el8.10.0+21354+3ad137bb
0:3.78-439.module+el8.10.0+21354+3ad137bb
1:1.07-396.module+el8.10.0+21354+3ad137bb
0:3.28.01-443.module+el8.10.0+21354+3ad137bb
1:3.42-1.module+el8.10.0+21354+3ad137bb
4:2.01-1.module+el8.10.0+21354+3ad137bb
1:4.14-457.module+el8.10.0+21354+3ad137bb
4:1.55-457.module+el8.10.0+21354+3ad137bb
4:2.031-1.module+el8.10.0+21354+3ad137bb
1:3.21-457.module+el8.10.0+21354+3ad137bb
0:5.01-458.module+el8.10.0+21354+3ad137bb
0:1.17-396.module+el8.10.0+21354+3ad137bb
0:3.30-396.module+el8.10.0+21354+3ad137bb
0:2013.0523-396.module+el8.10.0+21354+3ad137bb
1:2.25-457.module+el8.10.0+21354+3ad137bb
0:1.61-457.module+el8.10.0+21354+3ad137bb
2:1.300-4.module+el8.10.0+21354+3ad137bb
0:1.27-458.module+el8.10.0+21354+3ad137bb
1
appwrite/new:1.1.96-self-hostedaf65a77db50e
perl@5.40.1-6
no fix listed
1
archivebox/archivebox:0.7.41a5a37331091
perl@5.36.0-7+deb12u3
no fix listed
1
arilot/docker-bitcoind:0.17.127a4f7e0f9f1
perl@5.22.1-9ubuntu0.6
no fix listed
1
aristidetm/basic-notebook:3.6.5469dbc951224
perl@5.36.0-7+deb12u1
no fix listed
1
arthurjguerra18/revwallet:v0.7.12f540af20b307
perl@5.36.0-7+deb12u1
no fix listed
1
artifacthub/tracker:v1.23.05368d21a6e5c
perl@5.40.1-6
no fix listed
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
perl@5.36.0-7+deb12u1
no fix listed
1
arunvelsriram/utils:latest655ad18fd8d6
perl@5.38.2-3.2ubuntu0.2
5.38.2-3.2ubuntu0.4
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
perl@5.30.0-9ubuntu0.4
no fix listed
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
perl@5.30.0-9ubuntu0.2
no fix listed
1
assistiot/identity-manager_db:latest0d3e6d35f168
perl@5.36.0-7
no fix listed
1
assistiot/location_processing:lateste9bae124095f
perl@5.34.0-3ubuntu1.1
no fix listed
1
assistiot/open_api_backend:1.1.230812ba93555
perl@5.34.0-3ubuntu1.3
no fix listed
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
perl@5.30.0-9ubuntu0.2
no fix listed
1
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
perl@5.36.0-7+deb12u1
no fix listed
1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
perl@5.36.0-7+deb12u1
no fix listed
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
perl@5.36.0-7
no fix listed
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
perl@5.30.0-9ubuntu0.3
no fix listed
1
athou/commafeed:6.2.0-postgresql5e388351df1a
perl@5.40.1-6
no fix listed
1
atlassian/confluence-server:7.10.03b9222ab32ef
perl@5.34.0-3ubuntu1.1
no fix listed
1
atlassian/jira-software:8.14.037bc46cbec1a
perl@5.34.0-3ubuntu1.3
no fix listed
1
atlassian/jira-software:9.7.264a75aa4ec4e
perl@5.38.2-3.2ubuntu0.1
5.38.2-3.2ubuntu0.4
1
avaprotocol/ap-avs:1.2.0c430ea5c37d6
perl@5.36.0-7+deb12u1
no fix listed
1
avinash263/pyredis263:latestaa2b8727f1a6
perl@5.36.0-7
no fix listed
1
avzini/web-app:latestf40b30210ed0
perl@5.36.0-7
no fix listed
1
baserow/backend:2.3.37c00549b3a6f
perl@5.40.1-6
no fix listed
1
baserow/backend:1.31.1e0b3c8130b91
perl@5.36.0-7+deb12u1
no fix listed
1
baserow/baserow:1.30.1df0c42eb67e8
perl@5.36.0-7+deb12u1
no fix listed
1
baserow/web-frontend:2.3.3566d24c7d9f5
perl@5.40.1-6
no fix listed
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
perl@5.30.0-9ubuntu0.2
no fix listed
1
beanbag/reviewboard:latest6b840f546e1c
perl@5.34.0-3ubuntu1.8
no fix listed
1
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
perl@5.40.1-6
no fix listed
1
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
perl@5.40.1-6
no fix listed
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
perl@5.36.0-7+deb12u2
no fix listed
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
perl@5.30.0-9ubuntu0.3
no fix listed
1
bicarus/mx-notifier:1.1.8bed688d16762
perl@5.30.0-9ubuntu0.2
no fix listed
1
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/clickhouse:24.12.3-debian-12-r13cf6544f6c6c
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/clickhouse:24.12.4c7e70bf1d3fb
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/clickhouse:24.6.2-debian-12-r3dcc172c6c55f
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/elasticsearch:8.12.215d4647fd491
perl@5.36.0-7+deb12u1
no fix listed
1
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
perl@5.36.0-7+deb12u2
no fix listed
1
bitnamilegacy/git:latest4b08d0c5af8d
perl@5.36.0-7+deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.