PHP APM Client
94%
Total Score
100
100
100
90
Seven of nine workflows lack top-level permissions declarations, which is a workflow-hardening gap. However, none has top-level write permissions, two are read-only, and six use job-level permissions; the organization-backed project partially compensates for the concern.
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-37781 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. datadog/dd-trace is vulnerable to Regular Expression Denial of Service (ReDoS) in versions 1.19.0 - 1.19.0. | 1.19.0 - 1.19.0 | Medium |
AIKIDO-2026-391824 datadog/dd-trace is vulnerable to Denial of Service (DoS) in versions 0.0.1 - 1.19.1. | 0.0.1 - 1.19.1 | High |
AIKIDO-2026-10708 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. datadog/dd-trace is vulnerable to Use After Free in versions 0.0.1 - 1.18.0. | 0.0.1 - 1.18.0 | Medium |
AIKIDO-2024-10338 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. datadog/dd-trace is vulnerable to Denial of Service (DoS) due to Memory Leak or Race Condition in versions 0.1.0 - 1.3.2. | 0.1.0 - 1.3.2 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.