{"package":"cart2quote/module-quotation-encoded","ecosystem":"composer","latest_version":"5.1.2","description":"Complete Request for Quote (RFQ) solution. Manage and create quote requests via the front-end or backend. Cart2Quote Ordering & Licenses: https://www.cart2quote.com/ordering-licenses","license":"proprietary","license_risk":"proprietary","commercial_use_notes":"Proprietary / custom license — do NOT use in commercial products without reviewing terms.","homepage":"https://bitbucket.org/cart2quote2/cart2quote2-releases","repository":"https://bitbucket.org/cart2quote2/cart2quote2-releases","downloads_weekly":0,"health":{"score":60,"risk":"moderate","breakdown":{"maintenance":25,"popularity":0,"security":20,"maturity":15,"community":0},"deprecated":false,"max_score":100},"vulnerabilities":{"count":1,"critical":0,"high":1,"medium":0,"low":0,"details":[{"vuln_id":"GHSA-pgj4-g5j4-cmfx","severity":"high","summary":"cart2quote/module-quotation-encoded Remote Code Execution via downloadCustomOptionAction","affected_versions":">=4.1.6,<=4.4.5|>=5.0.0,<5.4.4|=4.2.0|=4.2.1|=4.2.2|=4.2.3|=4.2.4|=4.2.5|=4.2.6|=4.2.7|=4.2.8|=4.2.9|=4.3.0|=4.3.1|=4.3.10|=4.3.11|=4.3.12|=4.3.2|=4.3.3|=4.3.4|=4.3.5|=4.3.6|=4.3.7|=4.3.8|=4.3.9|=4.4.0|=4.4.1|=4.4.2|=4.4.3|=4.4.4|=4.4.5","fixed_version":"5.4.4","source":"osv","published_at":"2024-05-15T18:06:58Z"}],"actively_exploited_count":0,"likely_exploited_count":0},"versions":{"latest":"5.1.2","total_count":79,"recent":["5.1.2","5.1.1","5.1.0","5.0.3","5.0.2","5.0.1","5.0.0","4.5.1","4.5.0","4.4.9","4.4.8","4.4.7","4.4.6","4.4.5","4.4.4","4.4.3","4.4.2","4.4.1","4.4.0","4.3.12"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":0,"first_published":null,"last_published":"2026-04-15T10:41:33+00:00","dependencies_count":13,"dependencies":["php","magento/framework","magento/module-backend","magento/module-customer","magento/module-sales","magento/module-catalog","ext-gd","ext-imagick","ext-intl","ext-json","ext-simplexml","cart2quote/module-license","cart2quote/module-features"]},"github_stats":null,"bundle":null,"typescript":null,"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"update_required","issues":["Moderate health score (60/100) — verify manually","1 high severity vulnerabilities"],"use_version":"5.1.2","version_hint":"Update to >= 5.4.4 to fix known vulnerabilities","summary":"cart2quote/module-quotation-encoded@5.1.2 has vulnerabilities — update to latest"},"version_scoped":null,"requested_version":null,"_cache":"miss","_response_ms":311,"_powered_by":"depscope.dev — free package intelligence for AI agents","typosquat":{"is_suspected":false},"maintainer_trust":{"available":false},"malicious":{"is_malicious":false},"scorecard":{"available":false},"quality":{"available":false},"version_history_summary":{"total_versions":20,"first_release_age_days":3337,"last_release_days_ago":17,"avg_days_between_releases":176,"release_velocity":"active"}}