PkgRadar

Go modules · proxy.golang.org

k8s.io/autoscaler/cluster-autoscaler

Go Generate Shell: //go:generate directive shells out to curl/wget/bash — runs during `go generate`.

Why PkgRadar flagged v0.0.0-20260611222448-a2f4e2c932e6

SeveritySignalEvidence
mediumGo Generate Shell//go:generate directive shells out to curl/wget/bash — runs during `go generate`. · k8s.io/autoscaler/[email protected]/cloudprovider/azure/azure_client.go
mediumGo Generate Shell//go:generate directive shells out to curl/wget/bash — runs during `go generate`. · k8s.io/autoscaler/[email protected]/cloudprovider/azure/azure_vmss_delete_client.go
mediumRemote Payloadmatched "cURL " · k8s.io/autoscaler/[email protected]/cloudprovider/magnum/gophercloud/openstack/identity/v2/tokens/results.go
mediumRemote Payloadmatched "cUrl " · k8s.io/autoscaler/[email protected]/cloudprovider/tencentcloud/tencentcloud-sdk-go/cvm/v20170312/models.go
mediumRemote Payloadmatched "cUrl " · k8s.io/autoscaler/[email protected]/cloudprovider/volcengine/volcengine-go-sdk/service/ecs/api_describe_instance_vnc_url.go
mediumGo Mod Replace Localgo.mod replace directive redirects to a local filesystem path — non-portable / dev-time only. · k8s.io/autoscaler/[email protected]/go.mod

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260611222448-a2f4e2c932e6High risk892026-06-12
v0.0.0-20260610231048-dd8909901b1bHigh risk892026-06-11
v0.0.0-20260610121158-cb8ec19c524fHigh risk892026-06-11
v0.0.0-20260608193746-b74d47443217High risk892026-06-09
v0.0.0-20260608151540-212f88b4e4f3High risk892026-06-09
v0.0.0-20260608071229-1bebc53922d0High risk892026-06-09
v0.0.0-20260606134030-8e74622236e4High risk892026-06-07
v0.0.0-20260606105039-5332b6940cc0High risk892026-06-07
v0.0.0-20260606063230-d03cf8e5021cHigh risk892026-06-07
v0.0.0-20260605221241-e2015dd7091aHigh risk892026-06-06
v0.0.0-20260605152955-6fb15e947e1bHigh risk892026-06-06
v0.0.0-20260605100755-e4fc8fa1d301High risk892026-06-06
v0.0.0-20260605071755-3bef26753515High risk892026-06-06
v0.0.0-20260604102946-63e27f838f84High risk892026-06-05
v0.0.0-20260604061948-05eecbb2ad03High risk892026-06-05
v0.0.0-20260603235344-7154fda26b96High risk892026-06-05
v0.0.0-20260603115147-8b71fc545f2fHigh risk892026-06-04
v0.0.0-20260603075545-c6bcb3e90301High risk892026-06-04
v0.0.0-20260602131347-ae69598ecaefHigh risk892026-06-03
v0.0.0-20260601201852-16d244f6467dHigh risk892026-06-02
v0.0.0-20260601101650-2a1782e87affHigh risk892026-06-02
v0.0.0-20260601074651-7c2dd98dde21High risk892026-06-02
v0.0.0-20260601070652-4ca1855c500bHigh risk892026-06-02
v0.0.0-20260601065049-aa3210059217High risk892026-06-02
v0.0.0-20260530144647-1c15fc68567fHigh risk892026-05-31
v0.0.0-20260530132247-6800881c4831High risk892026-05-31
v0.0.0-20260530123047-a930a8a9474bHigh risk892026-05-31
v0.0.0-20260530085847-37f5db7bd217Review892026-05-31
v0.0.0-20260530081647-9ed902c3a38fReview892026-05-31
v0.0.0-20260522191649-cee8d9638bdfReview892026-05-30
v0.0.0-20260529143851-ad069199deb6Review892026-05-30
v0.0.0-20260528184649-439373c6db29Review892026-05-29
v0.0.0-20260123183928-fbcf0f1fff9aReview862026-05-29
v0.0.0-20260123184929-7a1c0e21cc0cReview862026-05-29

Block this in CI

PkgRadar gates k8s.io/autoscaler/cluster-autoscaler (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go k8s.io/autoscaler/[email protected]