PkgRadar

PyPI · pypi.org

vllm-sr

Remote Payload: matched "curl "

Why PkgRadar flagged 0.3.0.dev20260527121622

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · vllm_sr-0.3.0.dev20260527121622/cli/runtime_lifecycle.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.3.0.dev20260613101602Low risk02026-06-13
0.3.0.dev20260613053001Low risk02026-06-13
0.3.0.dev20260612145913Low risk02026-06-12
0.3.0.dev20260612141242Low risk02026-06-12
0.3.0.dev20260612134944Low risk02026-06-12
0.3.0.dev20260612105258Low risk02026-06-12
0.3.0.dev20260611174128Low risk02026-06-11
0.3.0.dev20260611150420Low risk02026-06-11
0.3.0.dev20260611134417Low risk02026-06-11
0.3.0.dev20260610061646Low risk02026-06-10
0.3.0.dev20260610010642Low risk02026-06-10
0.3.0.dev20260609160928Low risk02026-06-09
0.3.0.dev20260609142133Low risk02026-06-09
0.3.0.dev20260609113912Low risk02026-06-09
0.3.0.dev20260609074658Low risk02026-06-09
0.3.0.dev20260609010534Low risk02026-06-09
0.3.0.dev20260608151518Low risk02026-06-08
0.3.0.dev20260608151135Low risk02026-06-08
0.3.0.dev20260608121821Low risk02026-06-08
0.3.0.dev20260608015540Low risk02026-06-08
0.3.0.dev20260607160947Low risk02026-06-07
0.3.0.dev20260607161020Low risk02026-06-07
0.3.0.dev20260607123219Low risk02026-06-07
0.3.0.dev20260606124108Low risk02026-06-06
0.3.0.dev20260606075931Low risk02026-06-06
0.3.0.dev20260605173848Low risk02026-06-05
0.3.0.dev20260605170054Low risk02026-06-05
0.3.0.dev20260605142910Low risk02026-06-05
0.3.0.dev20260605130431Low risk02026-06-05
0.3.0.dev20260605120815Low risk02026-06-05
0.3.0Low risk02026-06-05
0.3.0.dev20260605115945Low risk02026-06-05
0.3.0.dev20260605114208Low risk02026-06-05
0.3.0.dev20260605105652Low risk02026-06-05
0.3.0.dev20260605102936Low risk02026-06-05
0.3.0.dev20260605092108Low risk02026-06-05
0.3.0.dev20260605012054Low risk02026-06-05
0.3.0.dev20260605011041Low risk02026-06-05
0.3.0.dev20260604142243Low risk02026-06-04
0.3.0.dev20260604112842Low risk02026-06-04
0.3.0.dev20260604000505Low risk02026-06-04
0.3.0.dev20260604000343Low risk02026-06-04
0.3.0.dev20260603145640Low risk02026-06-03
0.3.0.dev20260603125825Low risk02026-06-03
0.3.0.dev20260603124938Low risk02026-06-03
0.3.0.dev20260603112220Low risk02026-06-03
0.3.0.dev20260603112110Low risk02026-06-03
0.3.0.dev20260603074323Low risk02026-06-03
0.3.0.dev20260603073100Low risk02026-06-03
0.3.0.dev20260603054517Low risk02026-06-03
0.3.0.dev20260603023915Low risk02026-06-03
0.3.0.dev20260602133245Low risk02026-06-02
0.3.0.dev20260602053645Low risk02026-06-02
0.3.0.dev20260602052603Low risk02026-06-02
0.3.0.dev20260601175159Low risk02026-06-01
0.3.0.dev20260601161021Low risk02026-06-01
0.3.0.dev20260601160359Low risk02026-06-01
0.3.0.dev20260601155553Low risk02026-06-01
0.3.0.dev20260601155523Low risk02026-06-01
0.3.0.dev20260601140129Low risk02026-06-01
0.3.0.dev20260601114605Low risk02026-06-01
0.3.0.dev20260601100755Low risk02026-06-01
0.3.0.dev20260601091725Low risk02026-06-01
0.3.0.dev20260601091616Low risk02026-06-01
0.3.0.dev20260601091336Low risk02026-06-01
0.3.0.dev20260601083646Low risk02026-06-01
0.3.0.dev20260531143259Low risk02026-05-31
0.3.0.dev20260531143157Low risk02026-05-31
0.3.0.dev20260531050623Low risk02026-05-31
0.3.0.dev20260531032157Low risk02026-05-31
0.3.0.dev20260531032108Low risk02026-05-31
0.3.0.dev20260531031952Low risk02026-05-31
0.3.0.dev20260531031844Low risk02026-05-31
0.3.0.dev20260531030616Low risk02026-05-31
0.3.0.dev20260530175641Low risk02026-05-30
0.3.0.dev20260530115008Low risk02026-05-30
0.3.0.dev20260530110654Low risk02026-05-30
0.3.0.dev20260530080604Low risk02026-05-30
0.3.0.dev20260530022956Low risk02026-05-30
0.3.0.dev20260530022726Low risk02026-05-30
0.3.0.dev20260530003631Low risk02026-05-30
0.3.0.dev20260529220613Low risk02026-05-29
0.3.0.dev20260529141630Low risk02026-05-29
0.3.0.dev20260529131810Low risk02026-05-29
0.3.0.dev20260529094420Low risk02026-05-29
0.3.0.dev20260529073305Low risk02026-05-29
0.3.0.dev20260529034502Low risk02026-05-29
0.3.0.dev20260528222113Low risk02026-05-28
0.3.0.dev20260528222007Low risk02026-05-28
0.3.0.dev20260528195013Low risk02026-05-28
0.3.0.dev20260528174122Low risk02026-05-28
0.3.0.dev20260528161129Low risk02026-05-28
0.3.0.dev20260528153908Low risk02026-05-28
0.3.0.dev20260527121622Review122026-05-27
0.3.0.dev20260527121417Review122026-05-27
0.3.0.dev20260527075613Review122026-05-27
0.3.0.dev20260527062103Review122026-05-27

Block this in CI

PkgRadar gates vllm-sr (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi vllm-sr==0.3.0.dev20260527121622