StackRadar

quay.io/projectquay/clair:4.9.0 container image

Quay.io

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/projectquay/clair

quay.io/projectquay/clair:4.9.0 resolved to 23329c3368e4, scanned 14 Sept 2026: 116 findings, 0 critical; deployed by 1 chart, among them clair.

Radar Score

1,1240013103

116 findings on digest 23329c3368e4 · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
4.9.0resolves to23329c3368e41 chart8 days ago00131031,124

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

13 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest 23329c3368e4 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-5cgq-3rg8-m6cvgolang.org/x/crypto@v0.45.00.52.0
MediumRHSA-2026:26275openssl@1:1.1.1k-14.el8_61:1.1.1k-16.el8_6
MediumGHSA-p77j-4mvh-x3m3google.golang.org/grpc@v1.77.01.79.3
MediumRHSA-2026:20611gnutls@3.6.16-8.el8_10.40:3.6.16-8.el8_10.6
MediumGHSA-xgrm-4fwx-7qm8github.com/jackc/pgx/v5@v5.7.65.9.0
MediumGHSA-9jj7-4m8r-rfcmgithub.com/jackc/pgx/v5@v5.7.65.9.0
MediumRHSA-2026:8534libarchive@3.3.3-6.el8_100:3.3.3-7.el8_10
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.45.00.52.0
MediumGHSA-vgwf-h737-ff37golang.org/x/crypto@v0.45.00.52.0
MediumGHSA-f5wc-c3c7-36mcgolang.org/x/crypto@v0.45.00.52.0
MediumGHSA-rm3j-f69w-wqmqgolang.org/x/crypto@v0.45.00.52.0
MediumRHSA-2026:26354libxml2@2.9.7-21.el8_10.30:2.9.7-21.el8_10.5
MediumRHSA-2026:38503openssl@1:1.1.1k-14.el8_61:1.1.1k-17.el8_6

Used by

1 chart
ChartVersionTagContainers
clairclair-helmVerified publisher0.12.04.9.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.