StackRadar

registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.110.1 container image

GitLab Container Registry

Scanned 10 Oct 2026

Deployed by 1 of 18,087 indexed charts (latest versions) at this tag.all tags of registry.gitlab.com/xrow-public/helm-openclaw/openclaw

registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.110.1 resolved to 51e6f187064f, scanned 10 Oct 2026: 141 findings, 3 critical, 3 on KEV; deployed by 1 chart, among them openclaw.

Radar Score

1,7503018120

141 findings on digest 51e6f187064f · scanned 10 Oct 2026

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
1.110.1resolves to51e6f187064f1 charttoday30181201,750

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

141 distinct on this digest

Findings for digest 51e6f187064f as scanned on 10 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 10 Oct 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-r292-9mhp-454mtar@7.5.167.5.21
LowRHBA-2026:39321kernel@6.12.0-211.64.1.el10_20:6.12.0-231.17.el10nv
LowGO-2026-6355golang.org/x/crypto@v0.50.00.56.0
LowGHSA-vxq7-64xx-v4gwurllib3@1.26.192.8.0
LowGO-2026-5970golang.org/x/text@v0.33.00.39.0
LowGO-2025-3521k8s.io/kubernetes@v1.36.1no fix listed
LowGO-2026-6303golang.org/x/crypto@v0.50.00.55.0
LowGO-2026-6354golang.org/x/crypto@v0.50.00.56.0
LowRHSA-2026:27709kernel@6.12.0-211.64.1.el10_20:6.12.0-212.11.el10nv
LowGO-2026-6222golang.org/x/image@v0.20.00.45.0
LowGHSA-8xwf-rjm4-xvhvoras.land/oras-go/v2@v2.6.02.6.1
LowGHSA-rfgv-xxqx-mfg5undici@6.28.06.28.1
LowGHSA-jxpm-75mh-9fp7oras.land/oras-go/v2@v2.6.02.6.1
LowGHSA-4xrf-jv44-h6hhip-address@10.2.010.2.2
LowGO-2026-6317oras.land/oras@v1.3.21.3.3
LowGHSA-6j4f-fj2g-mc7pbrace-expansion@5.0.95.0.10
LowGHSA-qhr7-859c-m2p7brace-expansion@5.0.95.0.11
LowGHSA-22jq-vg5j-6vggip-address@10.2.010.2.1
LowGHSA-45gg-vh54-h5m9golang.org/x/crypto@v0.50.00.52.0
LowGHSA-2vr4-cq9g-pvrcip-address@10.5.010.5.1
LowGHSA-5cv4-jp36-h3mwgolang.org/x/net@v0.52.00.55.0
LowGHSA-fxhp-mv3v-67qporas.land/oras-go/v2@v2.6.02.6.2
LowGO-2026-4970stdlib@go1.26.41.25.12
LowGHSA-8988-9cw3-xx77urllib3@1.26.192.8.0
LowGHSA-78mq-xcr3-xm33golang.org/x/crypto@v0.50.00.52.0
LowGHSA-rpw4-54j3-4h4qip-address@10.5.010.5.1
LowGHSA-w8wr-v893-vjvptar@7.5.167.5.18
LowRHSA-2026:23395kernel@6.12.0-211.64.1.el10_20:6.12.0-212.9.el10nv
LowGHSA-j6r3-76f7-8jcvip-address@10.5.010.7.1
LowGO-2025-3887helm@4.2.0no fix listed
LowGO-2025-3888helm@4.2.0no fix listed
LowGO-2026-4980stdlib@go1.26.21.25.10
LowGHSA-3wwx-pv8p-q78vundici@6.28.06.28.1
LowGHSA-rj75-hqrm-r3gfpostcss-selector-parser@7.1.47.1.6
LowGO-2026-5031golang.org/x/image@v0.20.00.41.0
LowGHSA-qpw4-5x99-6vjpgolang.org/x/crypto@v0.50.00.52.0
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.50.00.52.0
LowGO-2026-4982stdlib@go1.26.21.25.10
LowGO-2026-5025golang.org/x/net@v0.52.00.55.0
LowGHSA-gvwx-54wh-qm9jtar@7.5.167.5.17
LowGHSA-h3mg-xc3c-68pwip-address@10.5.010.7.1
LowGHSA-6qxp-vccf-f47h@modelcontextprotocol/sdk@1.30.01.31.0
LowGHSA-pq67-6m6q-mj2vurllib3@1.26.192.5.0
LowGO-2026-6091stdlib@go1.26.41.25.13
LowRHSA-2026:36186kernel@6.12.0-211.64.1.el10_20:6.12.0-231.15.el10nv
LowGHSA-p88m-4jfj-68fvundici@6.26.06.27.0
LowGHSA-65pc-fj4g-8rjxidna@3.73.15
LowGO-2026-4976stdlib@go1.26.21.25.10
LowGO-2026-5039stdlib@go1.26.21.25.11
LowGHSA-44p7-9xx4-hf2ggolang.org/x/image@v0.20.00.38.0

Used by

1 chart
ChartVersionTagContainers
openclawopenclawVerified publisher1.110.11.110.13

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 10 Oct 2026 · advisories as of 10 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.