Go modules · proxy.golang.org
github.com/apache/ofbiz-framework
Remote Payload: matched "curl "
Why PkgRadar flagged v0.0.0-20260527182907-d373cba71ec6
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "curl " · github.com/apache/[email protected]/docker/send_ofbiz_stop_signal.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.0.0-20260531062708-f65853163628 | Low risk | 0 | 2026-06-01 |
v0.0.0-20260530054756-496f641c00f2 | Low risk | 0 | 2026-05-31 |
v0.0.0-20260529103958-fd5618f86869 | Low risk | 0 | 2026-05-30 |
v0.0.0-20260529102406-c2731ad7f142 | Low risk | 0 | 2026-05-30 |
v0.0.0-20260528144622-27373f23848f | Low risk | 0 | 2026-05-29 |
v0.0.0-20260527182907-d373cba71ec6 | Review | 12 | 2026-05-29 |
Block this in CI
pkgradar gate --ecosystem go github.com/apache/[email protected]