Go modules · proxy.golang.org
github.com/mensfeld/code-on-incus
Reverse Shell, Credential file access
Why PkgRadar flagged v0.9.1-0.20260621073208-96dc4a21687a
| Severity | Signal | Evidence |
|---|---|---|
| high | Reverse Shell | github.com/mensfeld/[email protected]/internal/image/builder.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.9.1-0.20260621073208-96dc4a21687a | High risk | 45 | 2026-06-23 |
v0.8.2-0.20260529125752-1e5590918c99 | Low risk | 0 | 2026-05-30 |
v0.8.1 | Low risk | 0 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem go github.com/mensfeld/[email protected]