HIGH
DKR014
Dockerfile copies the entire context without .dockerignore
docker/Dockerfile.rocm_verl-0.3.0.post1:31
HIGH
SEC016
[SEC016] LLM Prompt Injection — User Input in AI Prompt: User-supplied text is interpolat…
verl/utils/reward_score/livecodebench/l…:222
MED
CFG006
[CFG006] Missing .gitignore: No .gitignore file. Risk of committing secrets and build art…
—
MED
SEC012
[SEC012] ZipSlip — Archive Path Traversal: Archive extraction without path validation all…
OSWorld-main/desktop_env/providers/virt…:110
MED
SEC012
[SEC012] ZipSlip — Archive Path Traversal: Archive extraction without path validation all…
OSWorld-main/desktop_env/providers/dock…:88
MED
SEC012
[SEC012] ZipSlip — Archive Path Traversal: Archive extraction without path validation all…
OSWorld-main/desktop_env/providers/vmwa…:185
MED
SEC014
[SEC014] SSL Verification Disabled: SSL certificate verification is disabled, allowing ma…
OSWorld-main/mm_agents/opencua/opencua_…:449
MED
SEC014
[SEC014] SSL Verification Disabled: SSL certificate verification is disabled, allowing ma…
OSWorld-main/mm_agents/qwen3vl_agent_lo…:637
MED
SEC014
[SEC014] SSL Verification Disabled: SSL certificate verification is disabled, allowing ma…
OSWorld-main/mm_agents/uitars15_v1_loca…:778
MED
SEC007
[SEC007] Unsafe Deserialization: Unsafe deserialization can execute arbitrary code.
verl/workers/rollout/sglang_rollout/uti…:67
MED
SEC007
[SEC007] Unsafe Deserialization: Unsafe deserialization can execute arbitrary code.
verl/utils/reward_score/livecodebench/l…:68
MED
SEC007
[SEC007] Unsafe Deserialization: Unsafe deserialization can execute arbitrary code.
verl/protocol.py:363
MED
SEC011
[SEC011] Unsafe PyTorch Model Loading: torch.load() uses pickle internally and can execut…
verl/protocol.py:347
MED
SEC011
[SEC011] Unsafe PyTorch Model Loading: torch.load() uses pickle internally and can execut…
train/osworld_vlm_merge_preproc_shards.…:63
MED
SEC011
[SEC011] Unsafe PyTorch Model Loading: torch.load() uses pickle internally and can execut…
train/osworld_train.py:566
MED
AUC001
[AUC001] No Repobility access matrix policy found: The repository uses web/API frameworks…
—
MED
DKR007
Docker build context has no .dockerignore
.dockerignore
MED
DKR009
Dockerfile separates apt update from install
docker/verl0.5-preview-cu128-torch2.7.1…:62
MED
DKR009
Dockerfile separates apt update from install
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:62
MED
DKR009
Dockerfile separates apt update from install
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:63
MED
DKR009
Dockerfile separates apt update from install
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:77
MED
DKR009
Dockerfile separates apt update from install
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:52
MED
DKR009
Dockerfile separates apt update from install
docker/Dockerfile.vllm.sglang.megatron.…:82
MED
DKR009
Dockerfile separates apt update from install
docker/Dockerfile.vllm.sglang.megatron.…:50
MED
DKR009
Dockerfile separates apt update from install
docker/Dockerfile.rocm_verl-0.4.1:14
MED
DKR009
Dockerfile separates apt update from install
docker/Dockerfile.rocm:14
MED
DKR009
Dockerfile separates apt update from install
alfworld_master/Dockerfile:32
MED
DKR009
Dockerfile separates apt update from install
alfworld_master/Dockerfile:8
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/mm_agents/jedi_7b_agent.py:40
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/mm_agents/jedi_7b_agent.py:10
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/mm_agents/jedi_3b_agent.py:40
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/desktop_env/providers/volc…:235
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/desktop_env/providers/vmwa…:205
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/desktop_env/providers/vmwa…:104
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/desktop_env/providers/virt…:60
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/desktop_env/providers/aws/…:137
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/run_multienv_uitars15_v2.py:23
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/run_multienv_uitars15_v2.py:16
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/run_multienv_uitars15_v1.py:23
MED
AIC003
Duplicated implementation block across source files
OSWorld-main/mm_agents/uitars15_v2.py:31
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-preview-cu128-torch2.7.1…:5
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-preview-cu128-torch2.7.1…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:5
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:5
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:5
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:3
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.vllm.sglang.megatron.…:3
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.vemlp.vllm.te:5
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.sglang:3
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.rocm_verl-0.4.1:2
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.rocm_verl-0.3.0.post1:9
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.rocm:2
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.ngc.vllm0.8.sagemaker:2
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.ngc.vllm0.8:3
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.ngc.vllm:2
MED
DKR001
Docker final stage has no non-root USER
docker/Dockerfile.extention.awsefa:3
MED
DKR001
Docker final stage has no non-root USER
alfworld_master/Dockerfile:1
MED
DKR001
Docker final stage has no non-root USER
OSWorld-main/monitor/Dockerfile:1
MED
SEC017
[SEC017] Unbounded Input to LLM/External API: User input is passed to an LLM or external …
verl/utils/reward_score/livecodebench/l…:39
MED
WEB003
Public web service has no security.txt
.well-known/security.txt
MED
AIC004
Suspicious implementation file appears unreferenced
OSWorld-main/run_multienv_uitars15_v2.py:1
MED
AIC004
Suspicious implementation file appears unreferenced
OSWorld-main/run_multienv_uitars15_v1.py:1
MED
AIC004
Suspicious implementation file appears unreferenced
OSWorld-main/run_multienv_mobileagent_v…:1
MED
DKR004
Docker build secret exposed through ARG
alfworld_master/Dockerfile:4
MED
JRN003
Frontend API reference is not matched by discovered backend routes
OSWorld-main/monitor/static/index.js:654
MED
JRN003
Frontend API reference is not matched by discovered backend routes
OSWorld-main/monitor/static/index.js:472
MED
JRN003
Frontend API reference is not matched by discovered backend routes
OSWorld-main/monitor/static/index.js:401
MED
JRN003
Frontend API reference is not matched by discovered backend routes
OSWorld-main/monitor/static/index.js:72
MED
AUC002
[AUC002] Low visible authorization coverage in route inventory: Only 27.3% of discovered …
—
MED
AUC012
[AUC012] FastAPI interactive docs may be exposed by framework defaults: FastAPI exposes /…
—
MED
AGT012
Agent control bridge may listen on a network interface without visible auth
OSWorld-main/mm_agents/llm_server/CogAg…:9
MED
AGT012
Agent control bridge may listen on a network interface without visible auth
OSWorld-main/desktop_env/server/main.py:168
MED
AGT012
Agent control bridge may listen on a network interface without visible auth
OSWorld-main/desktop_env/evaluators/get…:13
MED
AUC009
[AUC009] Sensitive function route lacks elevated authorization evidence: A route appears …
OSWorld-main/mm_agents/llm_server/CogAg…:155
MED
AUC009
[AUC009] Sensitive function route lacks elevated authorization evidence: A route appears …
OSWorld-main/serve_qwen3vl.py:634
MED
AUC009
[AUC009] Sensitive function route lacks elevated authorization evidence: A route appears …
OSWorld-main/serve_opencua.py:384
MED
AUC009
[AUC009] Sensitive function route lacks elevated authorization evidence: A route appears …
OSWorld-main/serve_uitars15.py:676
MED
SEC016
[SEC016] LLM Prompt Injection — User Input in AI Prompt: User-supplied text is interpolat…
verl/utils/reward_score/livecodebench/l…:39
MED
SEC005
[SEC005] Command Injection Risk: Unsafe shell execution or eval of user input.
alfworld_eval.py:27
MED
SEC005
[SEC005] Command Injection Risk: Unsafe shell execution or eval of user input.
coding_rl.py:15
MED
SEC005
[SEC005] Command Injection Risk: Unsafe shell execution or eval of user input.
coding_eval.py:15
MED
ERR001
[ERR001] Silent Exception Swallowing: Silently swallowing all exceptions hides bugs. Even…
sample/llm_env_rollout.py:156
MED
ERR001
[ERR001] Silent Exception Swallowing: Silently swallowing all exceptions hides bugs. Even…
sample/alfworld_utils.py:564
MED
ERR001
[ERR001] Silent Exception Swallowing: Silently swallowing all exceptions hides bugs. Even…
sample/llm_reward_rollout.py:156
MED
CORE_NO_CI
No CI/CD configuration found
—
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-preview-cu128-torch2.7.1…:73
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-preview-cu128-torch2.7.1…:34
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-preview-cu128-torch2.7.1…:29
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:73
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:34
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:29
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:74
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:34
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:29
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:111
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:90
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:34
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:29
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.vllm.sglang.megatron.…:114
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.vllm.sglang.megatron.…:32
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.vllm.sglang.megatron.…:27
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.sglang:28
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.sglang:23
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.ngc.vllm0.8.sagemaker:22
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.ngc.vllm0.8.sagemaker:17
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.ngc.vllm0.8:32
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.ngc.vllm0.8:27
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
docker/Dockerfile.extention.awsefa:15
LOW
DKR010
Dockerfile leaves apt package indexes in the image layer
alfworld_master/Dockerfile:29
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-preview-cu128-torch2.7.1…:76
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-preview-cu128-torch2.7.1…:73
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-preview-cu128-torch2.7.1…:39
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-preview-cu128-torch2.7.1…:34
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-preview-cu128-torch2.7.1…:29
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:76
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:73
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:39
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:34
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:29
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:15
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-cu126-torch2.7.1-fa2.8.0…:15
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:77
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:74
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:39
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:34
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:29
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:15
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.5-cu126-torch2.7-fa2.7.4/D…:15
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:111
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:90
LOW
DKR012
Dockerfile keeps pip download cache
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:39
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:34
LOW
DKR011
Dockerfile installs recommended OS packages
docker/verl0.4-cu124-torch2.6-fa2.7.4/D…:29
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.vllm.sglang.megatron.…:114
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.vllm.sglang.megatron.…:105
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.vllm.sglang.megatron.…:103
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.vllm.sglang.megatron.…:37
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.vllm.sglang.megatron.…:32
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.vllm.sglang.megatron.…:27
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.sglang:35
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.sglang:28
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.sglang:23
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:310
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:292
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:282
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:270
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:235
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:149
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:85
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:72
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:71
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.4.1:45
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.rocm_verl-0.4.1:15
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.3.0.post1:58
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.3.0.post1:53
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm_verl-0.3.0.post1:34
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:310
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:292
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:282
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:270
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:235
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:149
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:85
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:72
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:71
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.rocm:45
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.rocm:15
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.ngc.vllm0.8.sagemaker:33
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.ngc.vllm0.8.sagemaker:22
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.ngc.vllm0.8.sagemaker:17
LOW
DKR012
Dockerfile keeps pip download cache
docker/Dockerfile.ngc.vllm0.8:37
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.ngc.vllm0.8:32
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.ngc.vllm0.8:27
LOW
DKR011
Dockerfile installs recommended OS packages
docker/Dockerfile.extention.awsefa:15
LOW
DKR011
Dockerfile installs recommended OS packages
alfworld_master/Dockerfile:48
LOW
DKR012
Dockerfile keeps pip download cache
alfworld_master/Dockerfile:45
LOW
DKR012
Dockerfile keeps pip download cache
alfworld_master/Dockerfile:43
LOW
DKR012
Dockerfile keeps pip download cache
alfworld_master/Dockerfile:42
LOW
DKR011
Dockerfile installs recommended OS packages
alfworld_master/Dockerfile:33
LOW
DKR011
Dockerfile installs recommended OS packages
alfworld_master/Dockerfile:29
LOW
DKR011
Dockerfile installs recommended OS packages
alfworld_master/Dockerfile:9
LOW
AIC005
Duplicate top-level symbol appears in a patch-style file
OSWorld-main/run_multienv_mobileagent_v…:1
LOW
AIC005
Duplicate top-level symbol appears in a patch-style file
OSWorld-main/mm_agents/uitars15_v1.py:1
LOW
DKC010
Compose service lacks no-new-privileges hardening
OSWorld-main/monitor/docker-compose.yml:1
LOW
AIC002
Source file name looks like an AI patch artifact
verl/models/mcore/patch_v012.py:1
LOW
AIC002
Source file name looks like an AI patch artifact
OSWorld-main/mm_agents/uitars15_v1.py:1
LOW
AIC002
Source file name looks like an AI patch artifact
OSWorld-main/run_multienv_uitars15_v1.py:1
LOW
AIC002
Source file name looks like an AI patch artifact
OSWorld-main/run_multienv_mobileagent_v…:1
LOW
AIC002
Source file name looks like an AI patch artifact
OSWorld-main/lib_run_single_mobileagent…:1
LOW
DKC006
Compose service does not declare a runtime user
OSWorld-main/monitor/docker-compose.yml:1