PkgRadar

PyPI · pypi.org

vmware-avi

Credential file access: matched "kubeconfig"

Why PkgRadar flagged 1.5.29

SeveritySignalEvidence
mediumCredential file accessmatched "kubeconfig" · vmware_avi-1.5.29/vmware_avi/config.py

Scanned versions

VersionVerdictScoreScanned (UTC)
1.5.38Low risk02026-06-12
1.5.37Low risk02026-06-12
1.5.36Low risk02026-06-11
1.5.35Low risk02026-06-10
1.5.32Low risk02026-06-08
1.5.30Low risk02026-06-07
1.5.29Review152026-05-29

Block this in CI

PkgRadar gates vmware-avi (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi vmware-avi==1.5.29