Provides an implementation of the Guzzle Command library that uses Guzzle service descriptions to describe web services, serialize requests, and parse responses into easy to use model structures.
86%
Total Score
88
100
94
100
All 39 commits in the last three months came from one contributor, creating a meaningful continuity risk. Organizational backing partly compensates because maintenance can be handed off within the project.
The repository uses Make and Composer, but no security-scanning tools were detected. This is a modest transparency and hygiene gap, not evidence that the release is unsafe.
| Title | Versions | Severity |
|---|---|---|
CVE-2026-53723 guzzlehttp/guzzle-services is vulnerable to Improper Input Validation in versions 0.0.0 - 1.5.4. | 0.0.0 - 1.5.4 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/psr7 Version ^3.1 | — | — |
guzzlehttp/guzzle Version ^8.1 | — | — |
guzzlehttp/command Version ^2.0.1 | — | — |
guzzlehttp/promises Version ^3.0.2 | — | — |
symfony/polyfill-php80 Version ^1.25 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.