Go modules · proxy.golang.org
github.com/supakeen/images
Remote Payload: matched "curl "
Why PkgRadar flagged v0.0.0-20260612202143-1146ec23cd9c
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "curl " · github.com/supakeen/[email protected]/pkg/manifest/subscription.go |
| medium | Remote Payload | matched "Curl " · github.com/supakeen/[email protected]/pkg/osbuild/curl_source.go |
| medium | Remote Payload | matched "Curl " · github.com/supakeen/[email protected]/pkg/osbuild/source.go |
| medium | Remote Payload | matched "curl " · github.com/supakeen/[email protected]/pkg/ostree/ostree.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.0.0-20260612202143-1146ec23cd9c | High risk | 58 | 2026-06-16 |
v0.0.0-20260611060436-82609bc257c0 | High risk | 58 | 2026-06-12 |
v0.0.0-20260610040249-21a496e4edef | High risk | 58 | 2026-06-11 |
v0.0.0-20260608071928-29dd241647dd | High risk | 58 | 2026-06-11 |
v0.0.0-20260605054032-7a7727cc65dc | High risk | 58 | 2026-06-08 |
v0.0.0-20260602124106-3d8e1f44fdc7 | High risk | 58 | 2026-06-06 |
v0.0.0-20260529040018-02fed9157800 | High risk | 58 | 2026-06-01 |
v0.0.0-20260527113942-dac29a33b6d4 | Review | 58 | 2026-05-29 |
Block this in CI
pkgradar gate --ecosystem go github.com/supakeen/[email protected]