TYPO3 extension to index and search content with Elasticsearch
68%
Total Score
caution
Usable with caveats: all recent repository commits come from one contributor.
One contributor made all five commits in the last 3 months, creating a meaningful continuity risk. Organization backing provides some capacity for handoff, but no second active contributor is shown.
The repository has no published security policy, reducing transparency about how maintainers receive and handle vulnerability reports.
The workflow audit completed successfully and found no untrusted checkout or script-injection path, but both analyzed actions are unpinned and a high-confidence template-injection finding remains. The template finding is hygiene on its own, while unpinned actions add supply-chain exposure.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/dbal Version ^3.0 || ^4.0 | — | — |
typo3/cms-core Version ^13.4 || ^14.3 | — | — |
symfony/console Version ^6.4 || ^7.0 | — | — |
typo3/cms-fluid Version ^13.4 || ^14.3 | — | — |
psr/http-message Version ^1.0 || ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.