PkgRadar

PyPI · pypi.org

lib-1779997093-yjeeqn

Py Install Time Subprocess: subprocess call — process spawning.

Early detection

PkgRadar flagged this 1h before public disclosure

Detected 2026-05-28 · disclosed as MAL-2026-4861 on 2026-05-28

Why PkgRadar flagged 1.0.0

SeveritySignalEvidence
mediumPy Install Time Subprocesssubprocess call — process spawning. · lib_1779997093_yjeeqn-1.0.0/setup.py
highPy Install Time Raw SocketRaw socket creation at install or import time. · lib_1779997093_yjeeqn-1.0.0/setup.py

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.0High risk802026-05-28

Block this in CI

PkgRadar gates lib-1779997093-yjeeqn (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi lib-1779997093-yjeeqn==1.0.0