PkgRadar

Go modules · proxy.golang.org

github.com/0xpolygonhermez/erigon

Shell Credential File Read, Remote Payload, Go Cgo Preamble

Why PkgRadar flagged v0.9.22

SeveritySignalEvidence
highShell Credential File Read
highShell Credential File Read
mediumRemote Payload

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.9.22High risk1022026-06-27
v0.9.4Review242026-06-27
v1.6.7High risk1102026-06-27
v1.9.14High risk1372026-06-27
v1.8.4High risk1252026-06-27
v0.0.4-alphaReview242026-06-27
v1.0.7Review242026-06-27
v0.6.4Low risk02026-06-27
v0.0.3-alphaReview242026-06-27
v1.9.16High risk1372026-06-27
v1.0.1High risk1022026-06-27
v1.9.25High risk1372026-06-27
v1.6.2High risk1102026-06-27
v0.6.5-1Low risk02026-06-27
v1.10.3High risk1372026-06-27
v1.9.5High risk1202026-06-27
v1.8.1High risk1252026-06-27
v0.0.1-alphaReview242026-06-27
v0.6.7Low risk02026-06-27
v1.10.6High risk1372026-06-27
v1.10.14High risk1372026-06-27
v1.6.6High risk1102026-06-27
v1.9.2High risk1052026-06-27
v1.10.5High risk1372026-06-27
v1.10.13High risk1372026-06-27
v0.9.30High risk1022026-06-27
v1.10.9High risk1372026-06-27
v0.6.5-2Low risk02026-06-27
v0.9.36High risk1022026-06-27
v1.5.3High risk502026-06-27
v1.10.1High risk1372026-06-27
v1.2.22Review242026-06-27
v0.9.18High risk902026-06-27
v1.6.1High risk1102026-06-27
v1.9.11High risk1372026-06-27
v1.9.9High risk1322026-06-27
v0.6.8Low risk02026-06-27
v1.10.4High risk1372026-06-27
v0.6.3Low risk02026-06-27
v0.9.1Review242026-06-27
v1.5.7High risk502026-06-27
v0.8.4-1High risk952026-06-27
v0.8.5-2High risk952026-06-27
v1.10.11High risk1372026-06-27
v0.9.34-1High risk1022026-06-27
v1.1.5Review242026-06-27
v1.9.20High risk1372026-06-27
v0.9.39High risk1022026-06-27
v1.9.3High risk1202026-06-27
v1.0.4Review242026-06-27
v1.5.4High risk502026-06-27
v1.9.4High risk1202026-06-27
v1.10.2High risk1372026-06-27
v1.5.2High risk502026-06-27
v0.7.10High risk692026-06-27
v1.9.24High risk1372026-06-27
v1.8.17High risk1322026-06-27
v0.8.4High risk952026-06-27
v1.8.16High risk1322026-06-27
v1.0.9Review242026-06-27
v0.9.28High risk1022026-06-27
v1.9.18High risk1372026-06-27
v1.10.15High risk1372026-06-27
v1.9.10High risk1372026-06-27
v1.8.19High risk1442026-06-27
v0.9.0Review242026-06-27
v0.6.5Low risk02026-06-27
v0.7.10-brokenHigh risk692026-06-27
v1.9.22High risk1372026-06-27
v1.7.3High risk1102026-06-27
v1.5.9High risk1002026-06-27
v1.8.15High risk1322026-06-27
v1.10.0High risk1372026-06-27
v0.8.5High risk952026-06-27
v1.6.3High risk1102026-06-27
v1.9.1High risk1052026-06-27
v0.9.23High risk1022026-06-27
v1.9.13High risk1372026-06-27
v1.0.3Review242026-06-27
v1.10.12High risk1372026-06-27
v1.10.7High risk1372026-06-27
v1.7.1High risk1102026-06-27
v1.8.20High risk1322026-06-27
v0.9.25High risk1022026-06-27
v1.7.2High risk1102026-06-27
v1.5.0High risk502026-06-27
v0.9.34High risk1022026-06-27
v1.9.12High risk1372026-06-27
v1.8.14High risk1322026-06-27
v1.8.6High risk1252026-06-27
v1.5.5High risk502026-06-27
v1.8.2High risk1252026-06-27
v0.9.24High risk1022026-06-27
v1.5.6High risk502026-06-27
v1.9.15High risk1372026-06-27
v1.8.9High risk1252026-06-27
v0.9.20High risk902026-06-27
v1.9.19High risk1372026-06-27
v1.8.7High risk1252026-06-27
v0.9.32High risk1022026-06-27
v1.10.10High risk1372026-06-27
v0.6.0Low risk02026-06-27
v1.8.5High risk1252026-06-27
v0.9.17High risk902026-06-27
v1.8.11High risk1252026-06-27
v0.0.2-alphaReview242026-06-27
v0.9.26High risk1022026-06-27
v1.8.3High risk1252026-06-27
v1.0.6Review242026-06-27
v1.8.10High risk1252026-06-27
v1.0.0Review242026-06-27
v1.9.7High risk1202026-06-27
v1.9.17High risk1372026-06-27
v1.0.5Review242026-06-27
v1.9.21High risk1372026-06-27
v1.6.0High risk1102026-06-27
v1.6.5High risk1102026-06-27
v1.8.18High risk1322026-06-27
v0.6.6Low risk02026-06-27
v1.6.4High risk1102026-06-27
v1.5.1High risk502026-06-27
v1.8.0High risk1252026-06-27
v1.9.8High risk1322026-06-27
v1.8.21High risk1322026-06-27
v0.9.2Review242026-06-27
v0.0.1-testReview242026-06-27
v1.5.8High risk502026-06-27
v1.2.26Review242026-06-27
v1.9.6High risk1202026-06-27
v0.9.3Review242026-06-27
v1.8.13High risk1372026-06-27
v1.8.12High risk1372026-06-27
v1.8.8High risk1252026-06-27
v1.2.15Review242026-06-27
v0.9.21High risk1022026-06-27
v1.10.8High risk1372026-06-27
v1.7.0High risk1102026-06-27
v1.9.23High risk1372026-06-27
v0.9.38High risk1022026-06-27
v1.0.2Review242026-06-27
v1.2.18Review242026-06-27
v0.7.11High risk692026-06-27
v1.0.8Review242026-06-27
v1.9.0High risk1052026-06-27
v1.2.24Review242026-06-27
v1.10.16High risk1372026-06-27

Block this in CI

PkgRadar gates github.com/0xpolygonhermez/erigon (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/0xpolygonhermez/[email protected]
github.com/0xpolygonhermez/erigon — Go modules security scan | PkgRadar