{"package":"aliyundrive-webdav","ecosystem":"cargo","latest_version":"2.3.3","description":"WebDAV server for AliyunDrive","license":"MIT","license_risk":"permissive","commercial_use_notes":"Permissive: commercial closed-source use OK; preserve the copyright notice.","homepage":"https://github.com/messense/aliyundrive-webdav","repository":"https://github.com/messense/aliyundrive-webdav.git","downloads_weekly":238,"health":{"score":38,"risk":"critical","breakdown":{"maintenance":0,"popularity":3,"security":20,"maturity":15,"community":0},"deprecated":false,"max_score":100},"vulnerabilities":{"count":1,"critical":0,"high":1,"medium":0,"low":0,"details":[{"vuln_id":"CVE-2024-29640","severity":"high","summary":"aliyundrive-webdav vulnerable to Command Injection","affected_versions":"<=2.3.3|<=2.3.3|=0.1.0|=0.1.1|=0.1.10|=0.1.11|=0.1.12|=0.1.13|=0.1.14|=0.1.15|=0.1.16|=0.1.17|=0.1.18|=0.1.19|=0.1.2|=0.1.20|=0.1.21|=0.1.22|=0.1.23|=0.1.24|=0.1.25|=0.1.26|=0.1.27|=0.1.3|=0.1.4|=0.1.5|=0.1.6|=0.1.7|=0.1.8|=0.1.9|=0.2.0|=0.2.1|=0.3.0|=0.3.1|=0.3.2|=0.4.0|=0.4.1|=0.4.2|=0.4.3|=0.4.4|=0.4.5|=0.4.6|=0.4.7|=0.4.8|=0.5.0|=0.5.1|=0.5.2|=0.5.3|=0.5.4|=0.5.5|=1.0.0|=1.1.0|=1.1.1|=1.10.0|=1.10.1|=1.10.2|=1.10.3|=1.10.4|=1.10.5|=1.10.6|=1.10.7|=1.11.0|=1.2.0|=1.2.1|=1.2.2|=1.2.3|=1.2.4|=1.2.5|=1.2.6|=1.2.7|=1.3.0|=1.3.1|=1.3.2|=1.3.3|=1.4.0|=1.5.0|=1.5.1|=1.6.0|=1.6.1|=1.6.2|=1.7.0|=1.7.1|=1.7.2|=1.7.3|=1.7.4|=1.8.0|=1.8.1|=1.8.2|=1.8.3|=1.8.4|=1.8.5|=1.8.6|=1.8.7|=1.8.8|=1.8.9|=1.9.0|=2.0.0|=2.0.1|=2.0.2|=2.0.3|=2.0.4|=2.0.5|=2.1.0|=2.2.0|=2.2.1|=2.2.2|=2.3.0|=2.3.1|=2.3.2|=2.3.3","fixed_version":null,"source":"osv","published_at":"2024-03-29T18:30:42Z","in_kev":false,"epss_prob":0.02418,"epss_percentile":0.85172,"threat_tier":"theoretical"}],"actively_exploited_count":0,"likely_exploited_count":0},"versions":{"latest":"2.3.3","total_count":57,"recent":["2.3.3","2.3.2","2.3.1","2.3.0","2.2.2","2.2.1","2.2.0","2.1.0","2.0.5","2.0.4","2.0.3","2.0.2","2.0.1","2.0.0","1.11.0","1.10.7","1.10.6","1.10.5","1.10.4","1.10.3"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":0,"first_published":"2022-01-02T04:45:50.369902Z","last_published":"2023-10-02T02:12:57.177272Z","dependencies_count":0,"dependencies":[]},"github_stats":null,"bundle":null,"typescript":null,"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"update_required","issues":["Low health score (38/100)","1 high severity vulnerabilities"],"use_version":"2.3.3","version_hint":null,"summary":"aliyundrive-webdav@2.3.3 has vulnerabilities — update to latest"},"version_scoped":null,"requested_version":null,"_cache":"miss","_response_ms":438,"_powered_by":"depscope.dev — free package intelligence for AI agents","typosquat":{"is_suspected":false},"maintainer_trust":{"available":false},"malicious":{"is_malicious":false},"scorecard":{"available":false},"quality":{"available":false},"version_history_summary":{"total_versions":20,"first_release_age_days":1581,"last_release_days_ago":943,"avg_days_between_releases":83,"release_velocity":"stale"}}