Go modules · proxy.golang.org
github.com/Jude-Ho/karmada
Shell Credential File Read, Remote Payload
Why PkgRadar flagged v1.4.1-0.20260428030421-cef28e8d92bb
| Severity | Signal | Evidence |
|---|---|---|
| high | Shell Credential File Read | — |
| medium | Remote Payload | — |
| medium | Remote Payload | — |
| medium | Remote Payload | — |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v1.4.1-0.20260428030421-cef28e8d92bb | High risk | 69 | 2026-06-27 |
v0.2.0 | Low risk | 0 | 2026-06-27 |
v1.4.0 | High risk | 81 | 2026-06-27 |
Block this in CI
pkgradar gate --ecosystem go github.com/Jude-Ho/[email protected]