PkgRadar

Go modules · proxy.golang.org

github.com/cerbos/cerbos

Remote Payload: matched "curl "

Why PkgRadar flagged v0.0.0-20260616124052-b6fb6438de22

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · github.com/cerbos/[email protected]/cmd/cerbos/run/run.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260616124052-b6fb6438de22Review222026-06-17
v0.53.1-0.20260616124052-b6fb6438de22Review222026-06-17
v0.53.1-0.20260616120424-54046f0ef332Review222026-06-17
v0.0.0-20260616120424-54046f0ef332Review222026-06-17
v0.53.1-0.20260616111934-7b1bba163375Review222026-06-17
v0.0.0-20260616111934-7b1bba163375Review222026-06-17
v0.53.1-0.20260616070855-9e7879aecce5Review222026-06-17
v0.0.0-20260616070855-9e7879aecce5Review222026-06-17
v0.53.1-0.20260615155246-704e54b1cbe2Review222026-06-16
v0.0.0-20260615093829-1bda68492eb4Review222026-06-16
v0.53.1-0.20260615085726-f7f4efb14b06Review222026-06-16
v0.53.1-0.20260615085821-54356e05789dReview222026-06-16
v0.53.1-0.20260615085213-872bb540c63cReview222026-06-16
v0.53.1-0.20260615085124-e063c32b09aeReview222026-06-16
v0.53.1-0.20260615081745-2944c3504af0Review222026-06-16
v0.0.0-20260615081745-2944c3504af0Review222026-06-16
v0.0.0-20260615033322-72a094b6be50Review222026-06-16
v0.53.1-0.20260615033322-72a094b6be50Review222026-06-16
v0.0.0-20260610104458-ffc7e76b68f9Review222026-06-11
v0.53.1-0.20260610104458-ffc7e76b68f9Review222026-06-11
v0.0.0-20260610044148-3fb957680de1Review222026-06-11
v0.53.1-0.20260610044148-3fb957680de1Review222026-06-11
v0.0.0-20260609081250-218362c8d43aReview222026-06-10
v0.53.1-0.20260609081250-218362c8d43aReview222026-06-10
v0.53.1-0.20260608154659-a39c824df3dbReview222026-06-09
v0.53.1-0.20260608105534-51e2f3715e56Review222026-06-09
v0.53.1-0.20260608104906-51c9722ecfd6Review222026-06-09
v0.53.1-0.20260608101846-3aa45deee3f2Review222026-06-09
v0.53.1-0.20260608101809-2727a6c3721bReview222026-06-09
v0.53.1-0.20260608101731-265328e868aaReview222026-06-09
v0.53.1-0.20260608094707-83ba733a0375Review222026-06-09
v0.53.1-0.20260608060702-9f7b8bba6896Review222026-06-09
v0.0.0-20260608060702-9f7b8bba6896Review222026-06-09
v0.0.0-20260604091520-3ae505bb2831Review222026-06-05
v0.53.1-0.20260604091520-3ae505bb2831Review222026-06-05
v0.53.1-0.20260602120402-cf85ce6cd99eReview222026-06-03
v0.0.0-20260602091409-87c229ddb3e1Review222026-06-03
v0.53.1-0.20260601171622-5b78d9073354Review222026-06-02
v0.0.0-20260601171622-5b78d9073354Review222026-06-02
v0.0.0-20260601160010-003df7ef209bReview222026-06-02
v0.0.0-20260601055144-332cf34d2fbcReview222026-06-02
v0.53.1-0.20260601055050-080e00e2b4deReview222026-06-02
v0.53.1-0.20260601055144-332cf34d2fbcReview222026-06-02
v0.0.0-20260528065645-9537aa61a648Review222026-05-30
v0.53.1-0.20260528065645-9537aa61a648Review222026-05-30
v0.0.0-20260528235130-ae6972a6df0cReview222026-05-30
v0.0.0-20260528132934-69be648e9b46Review222026-05-29
v0.53.1-0.20260528132934-69be648e9b46Review222026-05-29

Block this in CI

PkgRadar gates github.com/cerbos/cerbos (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/cerbos/[email protected]