StackRadar

registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.97.0 container image

GitLab Container Registry

Scanned 4 Oct 2026

Deployed by 1 of 17,988 indexed charts (latest versions) at this tag.all tags of registry.gitlab.com/xrow-public/helm-openclaw/openclaw

registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.97.0 resolved to dfdbbfe06763, scanned 4 Oct 2026: 127 findings, 3 critical, 3 on KEV; deployed by 1 chart, among them openclaw.

Radar Score

1,6503016108

127 findings on digest dfdbbfe06763 · scanned 4 Oct 2026

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
1.97.0resolves todfdbbfe067631 charttoday30161081,650

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

108 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest dfdbbfe06763 as scanned on 4 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 4 Oct 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGO-2026-4977stdlib@go1.26.21.25.10
LowGHSA-vxpw-j846-p89qundici@6.26.06.27.0
LowGO-2026-4986stdlib@go1.26.21.25.10
LowGO-2026-4918stdlib@go1.26.21.25.10
LowGO-2026-4918golang.org/x/net@v0.52.00.53.0
LowRHSA-2026:74001expat@2.7.3-1.el10_2.30:2.7.3-1.el10_2.5
LowGHSA-mwp4-54f8-5fhrip-address@10.2.010.3.1
LowRHSA-2026:73187kernel@6.12.0-211.61.1.el10_20:6.12.0-259.26.el10nv
LowGHSA-rgw5-rvv9-x895brace-expansion@5.0.65.0.9
LowGHSA-23hp-3jrh-7fpwtar@7.5.167.5.19
LowGHSA-8x88-c5mf-7j5wtar@7.5.167.5.18
LowGHSA-mh99-v99m-4gvgbrace-expansion@5.0.65.0.8
LowRHSA-2026:71586libxml2@2.12.5-10.el10_2.30:2.12.5-10.el10_2.4
LowGHSA-q675-qj96-32m9golang.org/x/image@v0.20.00.41.0
LowGO-2026-5942golang.org/x/net@v0.55.00.56.0
LowGO-2026-5942stdlib@go1.26.21.26.6
LowGHSA-w879-237q-wc7rgolang.org/x/crypto@v0.45.00.52.0
LowGHSA-q4h4-gmj2-qvw2golang.org/x/crypto@v0.45.00.52.0
LowGO-2026-4961golang.org/x/image@v0.20.00.42.0
LowGO-2026-4971stdlib@go1.26.21.25.10
LowGO-2026-5061golang.org/x/image@v0.20.00.43.0
LowGO-2026-5062golang.org/x/image@v0.20.00.43.0
LowGO-2026-5066golang.org/x/image@v0.20.00.43.0
LowGO-2026-5037stdlib@go1.26.21.25.11
LowRHSA-2026:74974kernel@6.12.0-211.61.1.el10_20:6.12.0-259.28.el10nv
LowGO-2026-5972stdlib@go1.26.21.25.13
LowGO-2026-6088stdlib@go1.26.21.25.13
LowGO-2026-6089stdlib@go1.26.21.25.13
LowGO-2026-6090stdlib@go1.26.21.25.13
LowGO-2026-5038stdlib@go1.26.21.25.11
LowGO-2026-6218stdlib@go1.26.21.25.13
LowGHSA-ch52-4w7c-c8xphttp-cache-semantics@4.2.0no fix listed
LowGHSA-r292-9mhp-454mtar@7.5.167.5.21
LowGO-2026-6355golang.org/x/crypto@v0.55.00.56.0
LowGHSA-vxq7-64xx-v4gwurllib3@1.26.192.8.0
LowGO-2026-5970golang.org/x/text@v0.33.00.39.0
LowGO-2025-3521k8s.io/kubernetes@v1.36.1no fix listed
LowGO-2026-6303golang.org/x/crypto@v0.45.00.55.0
LowGO-2026-6354golang.org/x/crypto@v0.55.00.56.0
LowGO-2026-6222golang.org/x/image@v0.20.00.45.0
LowGHSA-8xwf-rjm4-xvhvoras.land/oras-go/v2@v2.6.02.6.1
LowGHSA-rfgv-xxqx-mfg5undici@6.26.06.28.1
LowGHSA-jxpm-75mh-9fp7oras.land/oras-go/v2@v2.6.02.6.1
LowGHSA-4xrf-jv44-h6hhip-address@10.2.010.2.2
LowGO-2026-6317oras.land/oras@v1.3.21.3.3
LowGHSA-6j4f-fj2g-mc7pbrace-expansion@5.0.95.0.10
LowGHSA-qhr7-859c-m2p7brace-expansion@5.0.95.0.11
LowGHSA-22jq-vg5j-6vggip-address@10.2.010.2.1
LowGHSA-45gg-vh54-h5m9golang.org/x/crypto@v0.45.00.52.0
LowRHSA-2026:37728kernel@6.12.0-211.61.1.el10_20:6.12.0-231.16.el10nv

Used by

1 chart
ChartVersionTagContainers
openclawopenclawVerified publisher1.97.01.97.03

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 4 Oct 2026 · advisories as of 4 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.