PkgRadar

Composer · packagist.org

oat-sa/extension-tao-mediamanager

Known Indicator Filename: oat-sa-extension-tao-mediamanager-bdbb4a4/views/build/grunt/bundle.js

Why PkgRadar flagged v14.0.2

SeveritySignalEvidence
highKnown Indicator Filenameoat-sa-extension-tao-mediamanager-bdbb4a4/views/build/grunt/bundle.js · oat-sa-extension-tao-mediamanager-bdbb4a4/views/build/grunt/bundle.js
mediumPhp Shell Callexec / system / passthru / shell_exec / proc_open — process spawning. · oat-sa-extension-tao-mediamanager-bdbb4a4/manifest.php

Scanned versions

VersionVerdictScoreScanned (UTC)
v14.0.3Low risk02026-06-05
v14.0.2Review182026-05-27

Block this in CI

PkgRadar gates oat-sa/extension-tao-mediamanager (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer oat-sa/[email protected]
oat-sa/extension-tao-mediamanager — Composer security scan | PkgRadar