PkgRadar

PyPI · pypi.org

urllib3-future

Py Import Time Raw Socket: Raw socket creation at install or import time.

Why PkgRadar flagged 2.21.902

SeveritySignalEvidence
highPy Import Time Raw SocketRaw socket creation at install or import time. · urllib3_future-2.21.902/src/urllib3/contrib/ssa/__init__.py
highPy Import Time Raw SocketRaw socket creation at install or import time. · urllib3_future-2.21.902/src/urllib3_future/contrib/ssa/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
2.21.902High risk102026-06-01
2.21.901High risk102026-06-01
2.21.900High risk102026-05-30

Block this in CI

PkgRadar gates urllib3-future (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi urllib3-future==2.21.902