PkgRadar

Maven · repo1.maven.org

com.sobot.chat:sobotsdk_g

Java Unsafe Deserialize, Java Process Spawn, Obfuscation Density

Why PkgRadar flagged 4.2.14.2

SeveritySignalEvidence
mediumJava Unsafe Deserializecom/sobot/chat/utils/IOUtils.java
mediumJava Unsafe Deserializecom/sobot/chat/utils/ChatUtils.java
mediumJava Process Spawncom/sobot/chat/notchlib/utils/RomUtils.java

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
4.2.14.2Review552026-06-24
4.2.14.1Review552026-06-24

Block this in CI

PkgRadar gates com.sobot.chat:sobotsdk_g (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem maven com.sobot.chat:[email protected]