The project has a long release history, recent publishing, and two active contributors. Missing security scanning and a repository security policy reduce transparency, while the linked repository, tests, changelog, and license are all in place.
82%
Total Score
88
50
94
83
The release has 15 runtime dependencies, including several Aimeos components and Laravel integrations; this is a substantial dependency surface but fits a full-featured ecommerce framework package.
Only one issue is open and no pull requests are open, though there was no issue or pull-request activity in the last month; this is a minor maintenance concern rather than evidence of abandonment.
Composer and Phing provide build tooling, but no security-scanning tools were detected, leaving security automation less visible.
The repository has no security policy, so its vulnerability-reporting process is not documented.
| Title | Versions | Severity |
|---|---|---|
CVE-2021-47763 aimeos/aimeos-laravel is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 2021.10 - 2021.10. | 2021.10 - 2021.10 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
nyholm/psr7 Version ~1.2 | — | — |
aimeos/ai-laravel Version 2026.10.* | — | — |
laravel/framework Version ^10.0||^11.0||^12.0||^13.0 | — | — |
aimeos/aimeos-core Version 2026.10.* | — | — |
aimeos/ai-admin-mcp Version 2026.10.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.