PkgRadar

Go modules · proxy.golang.org

github.com/open-component-model/ocm

Remote Payload: matched "wget\n\n"

Why PkgRadar flagged v0.15.1-0.20260602103004-9bb35e98e55a

SeveritySignalEvidence
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/ocm/extensions/accessmethods/wget/cli.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/ocm/extensions/accessmethods/wget/logging.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/ocm/extensions/accessmethods/wget/method.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/ocm/extensions/accessmethods/wget/options.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/utils/blobaccess/wget/access.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/utils/blobaccess/wget/logging.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/api/utils/blobaccess/wget/options.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/cmds/ocm/commands/ocmcmds/common/inputs/types/wget/cli.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/cmds/ocm/commands/ocmcmds/common/inputs/types/wget/spec.go
mediumRemote Payloadmatched "wget\n\n" · github.com/open-component-model/[email protected]/cmds/ocm/commands/ocmcmds/common/inputs/types/wget/type.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.15.1-0.20260602103004-9bb35e98e55aHigh risk952026-06-03
v0.44.0-rc.1High risk952026-06-03
v0.15.1-0.20260602063417-d8e43c7a1852High risk952026-06-03
v0.43.0High risk952026-06-03

Block this in CI

PkgRadar gates github.com/open-component-model/ocm (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/open-component-model/[email protected]