PyPI · pypi.org
bumps
Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution
Why PkgRadar flagged 1.0.5rc2
| Severity | Signal | Evidence |
|---|---|---|
| high | Python Bun Js Exec | Python file references the Bun JavaScript runtime — cross-language execution · bumps-1.0.5rc2/bumps/webview/build_client.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.0.5rc2 | High risk | 20 | 2026-06-11 |
1.0.5rc1 | Low risk | 0 | 2026-06-04 |
1.0.5rc0 | Low risk | 0 | 2026-06-02 |
Block this in CI
pkgradar gate --ecosystem pypi bumps==1.0.5rc2