PkgRadar

Go modules · proxy.golang.org

github.com/mysteriumnetwork/node

Shell Credential File Read, Go Cgo Preamble

Why PkgRadar flagged v0.0.0-20210302145642-bd1829e964dd

SeveritySignalEvidence
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20210302145642-bd1829e964ddHigh risk1002026-06-27
v0.0.0-20200908141038-69d086ecc917High risk1002026-06-27
v0.0.0-20200710093805-026479e4901fHigh risk1002026-06-27
v0.0.0-20200629073633-bd45d311e090High risk1002026-06-27
v0.0.0-20210322052109-93d33b53ff55High risk1002026-06-27
v0.0.0-20201021103603-c771323a9d23High risk1002026-06-27
v0.0.0-20201005082437-3dd8aecb2fd5Low risk02026-06-17

Block this in CI

PkgRadar gates github.com/mysteriumnetwork/node (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/mysteriumnetwork/[email protected]
github.com/mysteriumnetwork/node — Go modules security scan | PkgRadar