PkgRadar

PyPI · pypi.org

kubernetes

Py Runtime Base64 Decode: base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern.

Why PkgRadar flagged 36.0.2

SeveritySignalEvidence
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · kubernetes-36.0.2/kubernetes/config/kube_config.py

Scanned versions

VersionVerdictScoreScanned (UTC)
36.0.2Review92026-06-01
36.0.1Review402026-05-26

Block this in CI

PkgRadar gates kubernetes (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi kubernetes==36.0.2