PyPI · pypi.org
xpander-sdk
Remote Payload: matched "Curl "
Why PkgRadar flagged 2.0.332
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "Curl " · xpander_sdk-2.0.332/src/xpander_sdk/modules/agents/models/agent.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
2.0.357 | Low risk | 0 | 2026-06-17 |
2.0.356 | Low risk | 0 | 2026-06-17 |
2.0.355 | Low risk | 0 | 2026-06-17 |
2.0.354 | Low risk | 0 | 2026-06-17 |
2.0.353 | Low risk | 0 | 2026-06-15 |
2.0.352 | Low risk | 0 | 2026-06-14 |
2.0.351 | Low risk | 0 | 2026-06-14 |
2.0.350 | Low risk | 0 | 2026-06-14 |
2.0.349 | Low risk | 0 | 2026-06-11 |
2.0.348 | Low risk | 0 | 2026-06-11 |
2.0.347 | Low risk | 0 | 2026-06-08 |
2.0.346 | Low risk | 0 | 2026-06-07 |
2.0.345 | Low risk | 0 | 2026-06-07 |
2.0.344 | Low risk | 0 | 2026-06-07 |
2.0.343 | Low risk | 0 | 2026-06-03 |
2.0.342 | Low risk | 0 | 2026-06-02 |
2.0.341 | Low risk | 0 | 2026-06-02 |
2.0.340 | Low risk | 0 | 2026-06-01 |
2.0.339 | Low risk | 0 | 2026-06-01 |
2.0.338 | Low risk | 0 | 2026-06-01 |
2.0.337 | Low risk | 0 | 2026-05-31 |
2.0.336 | Low risk | 0 | 2026-05-31 |
2.0.335 | Low risk | 0 | 2026-05-31 |
2.0.334 | Low risk | 0 | 2026-05-28 |
2.0.333 | Low risk | 0 | 2026-05-28 |
2.0.332 | Review | 6 | 2026-05-27 |
2.0.331 | Review | 6 | 2026-05-27 |
2.0.330 | Review | 6 | 2026-05-27 |
Block this in CI
pkgradar gate --ecosystem pypi xpander-sdk==2.0.332