PkgRadar

Go modules · proxy.golang.org

github.com/kubernetes-sigs/kwok

Reverse Shell, Remote Payload, Tls Verification Disabled

Why PkgRadar flagged v0.8.1-0.20260623093452-023775e050c3

SeveritySignalEvidence
highReverse Shellgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/runtime/kind/cluster_port_forward.go
mediumRemote Payloadgithub.com/kubernetes-sigs/[email protected]/pkg/consts/consts.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/components/dashboard.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/components/kube_apiserver.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/components/kube_controller_manager.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/components/kube_scheduler.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/components/metrics_server.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/runtime/kind/cluster_etcd.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/runtime/kind/cluster_kube_apiserver.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/runtime/kind/cluster_kube_controller_manager.go
mediumTls Verification Disabledgithub.com/kubernetes-sigs/[email protected]/pkg/kwokctl/runtime/kind/cluster_kube_scheduler.go

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.8.1-0.20260623093452-023775e050c3High risk1142026-06-25
v0.8.0High risk1142026-06-25

Block this in CI

PkgRadar gates github.com/kubernetes-sigs/kwok (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/kubernetes-sigs/[email protected]