PkgRadar

Go modules · proxy.golang.org

ocm.software/ocm

Remote Payload: matched "wget\n\n"

Why PkgRadar flagged v0.43.0

SeveritySignalEvidence
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/ocm/extensions/accessmethods/wget/cli.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/ocm/extensions/accessmethods/wget/logging.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/ocm/extensions/accessmethods/wget/method.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/ocm/extensions/accessmethods/wget/options.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/utils/blobaccess/wget/access.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/utils/blobaccess/wget/logging.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/api/utils/blobaccess/wget/options.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/cmds/ocm/commands/ocmcmds/common/inputs/types/wget/cli.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/cmds/ocm/commands/ocmcmds/common/inputs/types/wget/spec.go
mediumRemote Payloadmatched "wget\n\n" · ocm.software/[email protected]/cmds/ocm/commands/ocmcmds/common/inputs/types/wget/type.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.43.0High risk952026-06-03
v0.44.0-rc.1High risk952026-06-03

Block this in CI

PkgRadar gates ocm.software/ocm (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go ocm.software/[email protected]