Go modules · proxy.golang.org
github.com/supabase/cli
Reverse Shell, Remote Payload
Why PkgRadar flagged v0.0.0-20240510074230-46d77b99d617
| Severity | Signal | Evidence |
|---|---|---|
| high | Reverse Shell | github.com/supabase/[email protected]/internal/start/start.go |
| medium | Remote Payload | github.com/supabase/[email protected]/tools/publish/main.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.0.0-20240510074230-46d77b99d617 | High risk | 52 | 2026-06-23 |
v2.103.0+incompatible | Low risk | 0 | 2026-06-22 |
v2.107.0+incompatible | Low risk | 0 | 2026-06-19 |
v0.0.0-20260615085949-8b0896f96024 | Low risk | 0 | 2026-06-16 |
v0.0.0-20260611114217-bd39bcf5e613 | Low risk | 0 | 2026-06-16 |
v2.106.0+incompatible | Low risk | 0 | 2026-06-13 |
v2.105.0+incompatible | Low risk | 0 | 2026-06-07 |
v2.104.0+incompatible | Low risk | 0 | 2026-06-03 |
Block this in CI
pkgradar gate --ecosystem go github.com/supabase/[email protected]