PkgRadar

Go modules · proxy.golang.org

github.com/gravitee-io/gravitee-kubernetes-operator

Shell Credential File Read

Why PkgRadar flagged v0.0.0-20260622100734-c61d1b0b69a2

SeveritySignalEvidence
highShell Credential File Readgithub.com/gravitee-io/[email protected]/internal/gateway/config.go

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260622100734-c61d1b0b69a2High risk452026-06-23
v0.0.0-20260619114155-b78b52a31076Low risk02026-06-20
v0.0.0-20260618155846-89e7f5442652Low risk02026-06-20
v0.0.0-20260616135716-9ba17f77d2dbLow risk02026-06-17
v0.0.0-20260615151232-543f9521fd34Low risk02026-06-16
v0.0.0-20260615083111-c34033b95f04Low risk02026-06-16
v0.0.0-20260611150843-b875a50d787cLow risk02026-06-12
v0.0.0-20260609125759-833078254dc7Low risk02026-06-10
v0.0.0-20260604150953-8ffb585c95caLow risk02026-06-05
v0.0.0-20260602165833-87917b6a32c3Low risk02026-06-03
v0.0.0-20260528104838-53462da6c7c1Low risk02026-05-30

Block this in CI

PkgRadar gates github.com/gravitee-io/gravitee-kubernetes-operator (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/gravitee-io/[email protected]