Go modules · proxy.golang.org
github.com/obolnetwork/charon
Shell Credential File Read
Why PkgRadar flagged v1.0.0-rc1.0.20260623091100-62b98733feab
| Severity | Signal | Evidence |
|---|---|---|
| high | Shell Credential File Read | github.com/obolnetwork/[email protected]/eth2util/keystore/keystore.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v1.0.0-rc1.0.20260623091100-62b98733feab | High risk | 45 | 2026-06-24 |
v1.10.3-rc1 | High risk | 45 | 2026-06-24 |
v1.10.2 | Low risk | 0 | 2026-06-11 |
v1.0.0-rc1.0.20260603151756-9a39a9805738 | Low risk | 0 | 2026-06-08 |
v1.0.0-rc1.0.20260529152003-941729df3558 | Low risk | 0 | 2026-06-02 |
v1.10.2-rc1 | Low risk | 0 | 2026-06-02 |
Block this in CI
pkgradar gate --ecosystem go github.com/obolnetwork/[email protected]