Maven · repo1.maven.org
com.sshtools:liftlib
Java Unsafe Deserialize, Java Process Spawn, Java Static Init Side Effect
Why PkgRadar flagged 0.9.15
| Severity | Signal | Evidence |
|---|---|---|
| medium | Java Unsafe Deserialize | com/sshtools/liftlib/Elevator.java |
| medium | Java Unsafe Deserialize | com/sshtools/liftlib/Helper.java |
| medium | Java Process Spawn | com/sshtools/liftlib/OS.java |
| medium | Java Process Spawn | com/sshtools/liftlib/commands/ElevatableSystemCommands.java |
| medium | Java Process Spawn | com/sshtools/liftlib/impl/PlatformElevation.java |
| medium | Java Process Spawn | com/sshtools/liftlib/impl/ElevatedJVM.java |
| medium | Java Static Init Side Effect | com/sshtools/liftlib/OS.java |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.9.15 | Review | 71 | 2026-06-25 |
Block this in CI
pkgradar gate --ecosystem maven com.sshtools:[email protected]