Go modules · proxy.golang.org
github.com/hyperledger/aries-framework-go
Shell Credential File Read, Tls Verification Disabled
Why PkgRadar flagged v0.1.8-0.20221025204933-b807371b6f1e
| Severity | Signal | Evidence |
|---|---|---|
| high | Shell Credential File Read | github.com/hyperledger/[email protected]/pkg/kms/webkms/remotekms.go |
| medium | Tls Verification Disabled | github.com/hyperledger/[email protected]/pkg/controller/webnotifier/websocket.go |
| medium | Tls Verification Disabled | github.com/hyperledger/[email protected]/pkg/didcomm/transport/ws/upgrade_srv.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.1.8-0.20221025204933-b807371b6f1e | High risk | 69 | 2026-06-25 |
v0.1.8-0.20220428211718-66cc046674a1 | High risk | 69 | 2026-06-25 |
v0.1.8-0.20220223031000-3067b89696a9 | High risk | 69 | 2026-06-25 |
v0.1.9-0.20230103224902-ba18fddb28c7 | Low risk | 0 | 2026-05-31 |
Block this in CI
pkgradar gate --ecosystem go github.com/hyperledger/[email protected]