PkgRadar

npm · registry.npmjs.org

weifuwu

Remote Payload: matched "curl "

Why PkgRadar flagged 0.19.9

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · package/dist/dist/index.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.25.1Low risk02026-06-17
0.25.0Low risk02026-06-16
0.24.3Low risk02026-06-16
0.24.2Low risk02026-06-14
0.24.1Low risk02026-06-14
0.24.0Low risk02026-06-14
0.23.4Low risk02026-06-13
0.23.3Low risk02026-06-13
0.23.2Low risk02026-06-13
0.23.1Low risk02026-06-13
0.23.0Low risk02026-06-13
0.22.3Low risk02026-06-13
0.22.2Low risk02026-06-12
0.22.1Low risk02026-06-12
0.22.0Low risk02026-06-12
0.21.0Low risk02026-06-12
0.19.10Low risk02026-06-10
0.19.9Review82026-06-09
0.19.8Review82026-06-09
0.19.7Review122026-06-09
0.19.6Review122026-06-09
0.19.5Review82026-06-09
0.19.4Review162026-06-07
0.19.2Review162026-06-07
0.19.1Review162026-06-07
0.19.0Review162026-06-07
0.18.18Review162026-06-06
0.18.17Review162026-06-06
0.18.16Review162026-06-06
0.18.14Review162026-06-06
0.18.13Review162026-06-06
0.18.12Review162026-06-06
0.18.10Review162026-06-06
0.18.11Review162026-06-06
0.18.9Review162026-06-06
0.18.8Review162026-06-06
0.18.6Review162026-06-06
0.18.5Review162026-06-06
0.18.4Review162026-06-06
0.18.3Review82026-06-06
0.18.2Review122026-06-06
0.18.1Review82026-06-06
0.18.0Review82026-06-05
0.17.26Review122026-06-05
0.17.24Review122026-06-05
0.17.25Review122026-06-05
0.17.23Review122026-06-05
0.17.22Review122026-06-05
0.17.21Review122026-06-05
0.17.18Review82026-06-05
0.17.19Review82026-06-05
0.17.13Review122026-06-05
0.17.14Review82026-06-05
0.17.8Review122026-06-05
0.17.7Review122026-06-05
0.17.4Review82026-06-05
0.17.3Review122026-06-05
0.17.1Review122026-06-05
0.17.0Review122026-06-05
0.16.6Review82026-06-05
0.16.5Review122026-06-05
0.16.4Review122026-06-05
0.16.3Review82026-06-05
0.16.2Review82026-06-04
0.16.1Review82026-06-04
0.16.0Review82026-06-04
0.15.0Review122026-06-03
0.14.0Review82026-06-02
0.14.1Review82026-06-02
0.13.1Review82026-06-02
0.13.0Review122026-06-02
0.12.0Review82026-06-02
0.11.0Review82026-06-02
0.10.0Review82026-06-02
0.9.6Review122026-06-01
0.9.5Review82026-05-30
0.9.4Review82026-05-30
0.9.3Review82026-05-30
0.8.2Review82026-05-30
0.9.2Review122026-05-30
0.9.1Review122026-05-30
0.9.0Review122026-05-30
0.8.1Review82026-05-30
0.8.0Review82026-05-30
0.7.0Low risk02026-05-29
0.6.0Low risk02026-05-28
0.5.0Low risk02026-05-28
0.5.1Low risk02026-05-28
0.4.0Low risk02026-05-27
0.2.4Low risk02026-05-27
0.3.0Low risk02026-05-27
0.1.0Low risk02026-05-26

Block this in CI

PkgRadar gates weifuwu (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]