Composer · packagist.org
friendsofphp/php-cs-fixer
Remote Payload: matched "github.com/PHP-CS-Fixer/PHP-CS-Fixer/releases/download"
Why PkgRadar flagged v3.95.5
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "github.com/PHP-CS-Fixer/PHP-CS-Fixer/releases/download" · PHP-CS-Fixer-PHP-CS-Fixer-7f86d87/src/ToolInfo.php |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v3.95.5 | Review | 5 | 2026-06-09 |
Block this in CI
pkgradar gate --ecosystem composer friendsofphp/[email protected]