PkgRadar

Maven · repo1.maven.org

io.github.sleod:tas-framework-lite

Java Unsafe Deserialize, Java Process Spawn

Why PkgRadar flagged 6.3.04-RELEASE

SeveritySignalEvidence
mediumJava Unsafe Deserializeio/github/sleod/tas/common/utils/ObjectWriterReader.java
mediumJava Process Spawnio/github/sleod/tas/core/controller/ExternAppController.java
mediumJava Process Spawnio/github/sleod/tas/common/utils/NodeLocator.java
mediumJava Process Spawnio/github/sleod/tas/common/processhandling/DefaultProcessBuilderFactory.java
mediumJava Process Spawnio/github/sleod/tas/common/processhandling/ProcessHandler.java

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
6.3.04-RELEASEReview702026-06-23

Block this in CI

PkgRadar gates io.github.sleod:tas-framework-lite (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem maven io.github.sleod:[email protected]