Go modules · proxy.golang.org
sigs.k8s.io/provider-aws-test-infra
DNS / OAST exfiltration: matched "dig $(curl -s -f -m 1 http://169.254.169.254/latest/meta-data/instance-id/).ec2.internal +short) $("
Why PkgRadar flagged v0.1.1-0.20260609023143-66f167b94ab2
| Severity | Signal | Evidence |
|---|---|---|
| high | DNS / OAST exfiltration | matched "dig $(curl -s -f -m 1 http://169.254.169.254/latest/meta-data/instance-id/).ec2.internal +short) $(" · sigs.k8s.io/[email protected]/config/ubuntu2404.yaml |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.1.1-0.20260609023143-66f167b94ab2 | High risk | 30 | 2026-06-10 |
v0.0.0-20260609023143-66f167b94ab2 | High risk | 30 | 2026-06-10 |
v0.1.1-0.20260607022629-ebe4c7dbe47f | High risk | 30 | 2026-06-08 |
v0.1.1-0.20260605022158-bbbfd2375654 | High risk | 30 | 2026-06-06 |
v0.0.0-20260605022158-bbbfd2375654 | High risk | 30 | 2026-06-06 |
v0.1.1-0.20260603022544-d76df8e882ac | High risk | 30 | 2026-06-04 |
v0.0.0-20260603022544-d76df8e882ac | High risk | 30 | 2026-06-04 |
v0.0.0-20260602164546-dbc743d7741f | High risk | 30 | 2026-06-03 |
v0.1.1-0.20260531022247-6868b26412e0 | High risk | 30 | 2026-06-01 |
v0.0.0-20260531022247-6868b26412e0 | High risk | 30 | 2026-06-01 |
v0.0.0-20260529023245-a5e664aec06d | High risk | 30 | 2026-05-30 |
v0.1.1-0.20260529023245-a5e664aec06d | High risk | 30 | 2026-05-30 |
v0.1.1-0.20260527231447-60efde278215 | High risk | 30 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem go sigs.k8s.io/[email protected]