PkgRadar

Maven · repo1.maven.org

com.google.http-client:google-http-client

Java Unsafe Deserialize, Java Static Init Side Effect

Why PkgRadar flagged 2.1.1

SeveritySignalEvidence
mediumJava Unsafe Deserialize
mediumJava Static Init Side Effect
mediumJava Static Init Side Effect

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
2.1.1Review222026-06-29

Block this in CI

PkgRadar gates com.google.http-client:google-http-client (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem maven com.google.http-client:[email protected]
com.google.http-client:google-http-client — Maven security scan | PkgRadar