github.com/weaveworks/.../weave vulnerabilities

Package Health Score

44/100
  • securitySecurity issues found
  • popularityRecognized
  • maintenanceInactive
  • communityActive

Maintenance

INACTIVE
ARCHIVED

Commit Frequency

No commits over the last 6 months

Open Issues
511
Open PR
18
New PRS
0
Last Release
5 years ago
Last Commit
3 years ago

Further analysis of the maintenance status of github.com/weaveworks/weave based on released Go modules versions cadence, the repository activity, and other data points determined that its maintenance is Inactive.

An important project maintenance signal to consider for github.com/weaveworks/weave is that it hasn't seen any new versions released to Go modules in the past 12 months, and could be considered as a discontinued project, or that which receives low attention from its maintainers.

In the past month we didn't find any pull request activity or change in issues status has been detected for the GitHub repository.

Popularity

RECOGNIZED
Imported By
0
GitHub Stars
6.6k
Forks
675
Contributors
80

Based on project statistics from the GitHub repository for the package github.com/weaveworks/weave, we found that it has been starred 6,619 times.

The popularity score for Golang modules is calculated based on the number of stars that the project has on GitHub as well as the number of imports by other modules.

Community

ACTIVE
Readme.md
No
Contributing.md
Yes
Code of Conduct
Yes
Contributors
80
Funding
No
LICENSE
Apache-2.0

With more than 10 contributors for the github.com/weaveworks/weave repository, this is possibly a sign for a growing and inviting community.

How about a good first contribution to this project? It seems that github.com/weaveworks/weave is missing a README file.

License

>=v0.0.0-20140818165526-e6feefa1fc25 <v1.9.9-0.20221123104002-8c8476381d48;
>=v2.0.0+incompatible <v2.5.0+incompatible;
>=v2.5.1-0.20181106172553-4a22dda13fe3+incompatible <v2.5.1+incompatible;
>=v1.9.9-0.20221123104002-8c8476381d48 <v2.0.0+incompatible;
>=v2.5.0+incompatible <v2.5.1-0.20181106172553-4a22dda13fe3+incompatible;
>=v2.5.1+incompatible <v2.5.2-0.20190121141021-54d24e65eff7+incompatible;

Direct Vulnerabilities

Known vulnerabilities in the github.com/weaveworks/weave package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free

Security

SECURITY ISSUES FOUND
Show only direct vulnerabilities in latest version
VulnerabilityVulnerable Version
  • C
Arbitrary Code Execution

<2.6.3