PkgRadar

Go modules · proxy.golang.org

github.com/polynetwork/go-ethereum

Shell Credential File Read, Go Generate Shell, Remote Payload +2 more

Why PkgRadar flagged v1.8.22

SeveritySignalEvidence
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read
highShell Credential File Read
mediumGo Generate Shell
mediumRemote Payload

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v1.8.22High risk1322026-06-28
v1.6.7High risk1102026-06-28
v1.9.14High risk1372026-06-28
v0.4.2High risk572026-06-28
v1.8.4High risk1252026-06-28
v0.9.22High risk1022026-06-28
v1.4.17High risk622026-06-28
v0.6.4Low risk02026-06-28
v1.1.0High risk1022026-06-28
v1.9.16High risk1372026-06-28
v1.0.1High risk1022026-06-28
v1.9.25High risk1372026-06-28
v1.4.8High risk622026-06-28
v1.6.2High risk1102026-06-28
v0.6.5-1Low risk02026-06-28
v1.10.3High risk1372026-06-28
v1.9.5High risk1202026-06-28
v1.8.1High risk1252026-06-28
v0.6.7Low risk02026-06-28
v1.10.6High risk1372026-06-28
v1.8.24High risk1322026-06-28
v1.6.6High risk1102026-06-28
v1.9.2High risk1052026-06-28
v1.4.12High risk622026-06-28
v1.10.5High risk1372026-06-28
v1.3.5High risk1142026-06-28
v0.9.30High risk1022026-06-28
v1.4.15High risk622026-06-28
v0.6.5-2Low risk02026-06-28
v0.9.36High risk1022026-06-28
v1.4.19High risk622026-06-28
v1.5.3High risk502026-06-28
v1.10.1High risk1372026-06-28
v1.6.1High risk1102026-06-28
v1.4.18High risk622026-06-28
v1.2.2High risk1022026-06-28
v0.9.18High risk902026-06-28
v1.9.11High risk1372026-06-28
v1.9.9High risk1322026-06-28
v1.10.4High risk1372026-06-28
v0.6.8Low risk02026-06-28
v1.4.14High risk622026-06-28
v0.6.3Low risk02026-06-28
v1.5.7High risk502026-06-28
v0.8.4-1High risk952026-06-28
v1.4.0High risk622026-06-28
v0.8.5-2High risk952026-06-28
v0.9.34-1High risk1022026-06-28
v1.9.20High risk1372026-06-28
v0.9.39High risk1022026-06-28
v1.9.3High risk1202026-06-28
v1.4.10High risk622026-06-28
v1.8.23High risk1322026-06-28
v1.0.4High risk1022026-06-28
v1.5.4High risk502026-06-28
v1.3.2High risk1142026-06-28
v1.10.2High risk1372026-06-28
v1.9.4High risk1202026-06-28
v1.5.2High risk502026-06-28
v1.4.9High risk622026-06-28
v1.9.24High risk1372026-06-28
v1.8.17High risk1322026-06-28
v0.8.4High risk952026-06-28
v1.8.16High risk1322026-06-28
v1.4.4High risk622026-06-28
v0.7.10High risk692026-06-28
v1.8.26High risk1322026-06-28
v1.4.13High risk622026-06-28
v0.9.28High risk1022026-06-28
v1.9.18High risk1372026-06-28
v1.8.19High risk1442026-06-28
v0.4.1High risk572026-06-28
v1.9.10High risk1372026-06-28
v0.7.10-brokenHigh risk692026-06-28
v1.9.22High risk1372026-06-28
v1.8.25High risk1322026-06-28
v0.6.5Low risk02026-06-28
v1.7.3High risk1102026-06-28
v1.5.9High risk1002026-06-28
v1.10.0High risk1372026-06-28
v1.8.15High risk1322026-06-28
v0.8.5High risk952026-06-28
v1.6.3High risk1102026-06-28
v1.9.1High risk1052026-06-28
v0.9.23High risk1022026-06-28
v1.1.2High risk1022026-06-28
v1.4.11High risk622026-06-28
v1.9.13High risk1372026-06-28
v1.1.3High risk1022026-06-28
v1.0.3High risk1022026-06-28
v1.10.7High risk1372026-06-28
v1.4.1High risk622026-06-28
v1.8.20High risk1322026-06-28
v1.7.1High risk1102026-06-28
v1.7.2High risk1102026-06-28
v1.3.4High risk1142026-06-28
v0.9.25High risk1022026-06-28
v1.5.0High risk502026-06-28
v0.9.34High risk1022026-06-28
v1.4.6High risk622026-06-28
v1.3.1High risk1142026-06-28
v1.9.12High risk1372026-06-28
v1.8.14High risk1322026-06-28
v1.8.6High risk1252026-06-28
v1.1.1High risk1022026-06-28
v1.5.5High risk502026-06-28
v1.8.2High risk1252026-06-28
v0.9.24High risk1022026-06-28
v1.5.6High risk502026-06-28
v1.9.15High risk1372026-06-28
v1.8.9High risk1252026-06-28
v0.9.20High risk902026-06-28
v1.9.19High risk1372026-06-28
v1.3.6High risk1142026-06-28
v1.4.16High risk622026-06-28
v0.9.32High risk1022026-06-28
v1.8.7High risk1252026-06-28
v1.3.3High risk1142026-06-28
v1.8.5High risk1252026-06-28
v0.6.0Low risk02026-06-28
v0.4.3High risk572026-06-28
v1.4.3High risk622026-06-28
v0.9.17High risk902026-06-28
v1.8.11High risk1252026-06-28
v0.9.26High risk1022026-06-28
v1.8.3High risk1252026-06-28
v1.8.10High risk1252026-06-28
v1.0.0High risk1022026-06-28
v1.9.7High risk1202026-06-28
v1.4.2High risk622026-06-28
v1.9.17High risk1372026-06-28
v1.0.5High risk1022026-06-28
v1.6.0High risk1102026-06-28
v1.9.21High risk1372026-06-28
v1.8.18High risk1322026-06-28
v1.6.5High risk1102026-06-28
v1.6.4High risk1102026-06-28
v0.6.6Low risk02026-06-28
v1.8.0High risk1252026-06-28
v1.5.1High risk502026-06-28
v1.9.8High risk1322026-06-28
v1.8.21High risk1322026-06-28
v1.5.8High risk502026-06-28
v1.9.6High risk1202026-06-28
v1.8.13High risk1372026-06-28
v1.2.3High risk1022026-06-28
v1.8.12High risk1372026-06-28
v1.8.27High risk1322026-06-28
v1.8.8High risk1252026-06-28
v0.9.21High risk1022026-06-28
v1.7.0High risk1102026-06-28
v1.9.23High risk1372026-06-28
v1.4.5High risk622026-06-28
v0.9.38High risk1022026-06-28
v1.0.2High risk1022026-06-28
v0.7.11High risk692026-06-28
v1.9.0High risk1052026-06-28
v1.4.7High risk622026-06-27
v1.10.8High risk1372026-06-27
v1.10.9-0.20210908122159-90987db7334cHigh risk1372026-06-27

Block this in CI

PkgRadar gates github.com/polynetwork/go-ethereum (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/polynetwork/[email protected]
github.com/polynetwork/go-ethereum — Go modules security scan | PkgRadar