A
100/100 First Seen
Feb 19, 2026
Last Scanned
Feb 22, 2026
Findings
1
Score
100/100
LOW 1
Findings (1)
LOW
Git clone and execute chain
L30 Detects git clone of repositories followed by execution of cloned content
git clone https://github.com/Big-Buffer/XiaohongshuSpider + cd XiaohongshuSpider
pip install FIX
Review the dependency tree for nested or transitive dependencies that introduce risk. Use tools like npm audit or pip-audit to identify known vulnerabilities in the dependency chain.
FP?
Likely FP if the flagged dependency is a standard, widely-used library with no known vulnerabilities at the time of scanning.