zlib 1.3.2-r0 (fixing CVE-2026-27171) is already available in Alpine 3.23,
but current php:8.2-fpm-alpine and php:8.3-fpm-alpine images still ship zlib 1.3.1-r2.
Could you trigger a rebuild of these images so the patched version is included?
This affects vulnerability scanners like Snyk, which rely on base image manifests.