PkgRadar

PyPI · pypi.org

langgraph-cli

Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution

Why PkgRadar flagged 0.4.28

SeveritySignalEvidence
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · langgraph_cli-0.4.28/langgraph_cli/config.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.4.28High risk202026-06-10
0.4.27Low risk02026-05-28

Block this in CI

PkgRadar gates langgraph-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi langgraph-cli==0.4.28
langgraph-cli — PyPI security scan | PkgRadar