PyPI · pypi.org
pipulate
Remote Payload: matched "curl "
Why PkgRadar flagged 1.89
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "curl " · pipulate-1.89/apps/050_documentation.py |
| medium | Remote Payload | matched "cURL " · pipulate-1.89/apps/120_link_graph.py |
| medium | Remote Payload | matched "Curl " · pipulate-1.89/apps/400_botify_trifecta.py |
| medium | Remote Payload | matched "Curl " · pipulate-1.89/apps/xx_link_graph_v2.py |
| medium | Remote Payload | matched "curl " · pipulate-1.89/cli.py |
| medium | Remote Payload | matched "cURL " · pipulate-1.89/pipulate/core.py |
| medium | Remote Payload | matched "curl " · pipulate-1.89/server.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.99 | Low risk | 0 | 2026-06-08 |
1.98 | Low risk | 0 | 2026-06-04 |
1.97 | Low risk | 0 | 2026-06-04 |
1.96 | Low risk | 0 | 2026-06-04 |
1.95 | Low risk | 0 | 2026-06-02 |
1.94 | Low risk | 0 | 2026-06-02 |
1.93 | Low risk | 0 | 2026-06-02 |
1.92 | Low risk | 0 | 2026-06-02 |
1.91 | Low risk | 0 | 2026-06-02 |
1.90 | Low risk | 0 | 2026-06-01 |
1.89 | Review | 25 | 2026-05-27 |
Block this in CI
pkgradar gate --ecosystem pypi pipulate==1.89