PkgRadar

PyPI · pypi.org

faker

Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution

Why PkgRadar flagged 40.23.0

SeveritySignalEvidence
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · faker-40.23.0/faker/decode/codes.py

Scanned versions

VersionVerdictScoreScanned (UTC)
40.23.0High risk122026-06-10
40.22.0Review122026-06-09
40.21.0Low risk02026-06-02
40.20.0Low risk02026-06-01

Block this in CI

PkgRadar gates faker (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi faker==40.23.0