Cargo · crates.io
cargo-cross
Remote Payload: matched "github.com/zijiren233/osxcross/releases/download"
Why PkgRadar flagged 1.5.1
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "github.com/zijiren233/osxcross/releases/download" · cargo-cross-1.5.1/src/platform/darwin.rs |
| medium | Remote Payload | matched "github.com/zijiren233/cross-make/releases/download" · cargo-cross-1.5.1/src/platform/freebsd.rs |
| medium | Remote Payload | matched "github.com/zijiren233/cctools-port/releases/download" · cargo-cross-1.5.1/src/platform/ios.rs |
| medium | Remote Payload | matched "github.com/zijiren233/cross-make/releases/download" · cargo-cross-1.5.1/src/platform/linux.rs |
| medium | Remote Payload | matched "github.com/zijiren233/cross-make/releases/download" · cargo-cross-1.5.1/src/platform/netbsd.rs |
| medium | Remote Payload | matched "github.com/zijiren233/cross-make/releases/download" · cargo-cross-1.5.1/src/platform/windows.rs |
| medium | Remote Payload | matched "github.com/zijiren233/qemu-user-static/releases/download" · cargo-cross-1.5.1/src/runner.rs |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.5.1 | High risk | 58 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem cargo [email protected]