PkgRadar

Composer · packagist.org

rosgear/ge2

Php Base64 Eval Chain, Php Backtick With Decode

Why PkgRadar flagged 2.0

SeveritySignalEvidence
highPhp Base64 Eval Chainrosgear-ge2-e8686c0/framework/Encryption/Encrypter.php
highPhp Base64 Eval Chainrosgear-ge2-e8686c0/framework/Report/Report.php
highPhp Backtick With Decoderosgear-ge2-e8686c0/framework/Encryption/Encrypter.php
highPhp Backtick With Decoderosgear-ge2-e8686c0/framework/Report/Report.php

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
2.0High risk1002026-06-24

Block this in CI

PkgRadar gates rosgear/ge2 (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer rosgear/[email protected]