PkgRadar

Composer · packagist.org

volumnet/raas.cms.shop

Php Base64 Eval Chain: base64/gz/hex decode combined with eval/exec/backticks — classic PHP obfuscated payload.

Why PkgRadar flagged 4.6.3

SeveritySignalEvidence
highPhp Base64 Eval Chainbase64/gz/hex decode combined with eval/exec/backticks — classic PHP obfuscated payload. · volumnet-raas.cms.shop-5227388/classes/interfaces/tochkainterface.class.php
highPhp Shell With Decodeexec / system / shell_exec combined with base64/hex decode. · volumnet-raas.cms.shop-5227388/classes/interfaces/tochkainterface.class.php
mediumRemote Payloadmatched "cURL " · volumnet-raas.cms.shop-5227388/classes/forms-n-tables/editblockymlform.class.php
mediumRemote Payloadmatched "cURL " · volumnet-raas.cms.shop-5227388/classes/forms-n-tables/editymltypeform.class.php
mediumRemote Payloadmatched "cURL " · volumnet-raas.cms.shop-5227388/classes/interfaces/ubrrinterface.class.php
mediumRemote Payloadmatched "cURL " · volumnet-raas.cms.shop-5227388/classes/views/view_web.class.php
mediumRemote Payloadmatched "cURL " · volumnet-raas.cms.shop-5227388/classes/views/viewsub_dev.class.php
mediumRemote Payloadmatched "cURL " · volumnet-raas.cms.shop-5227388/tests/src/interfaces/UBRRInterfaceTest.php

Scanned versions

VersionVerdictScoreScanned (UTC)
4.6.3Review372026-06-07

Block this in CI

PkgRadar gates volumnet/raas.cms.shop (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer volumnet/[email protected]