Package Health

t3g/svg-sanitizer

The release includes a documented security fix, release notes, repository tests, and a valid license. Its workflow references are unpinned, and no repository security policy or scanning is reported.

Latest 1.0.3PackagistPackagist

10%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

40

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Are you affected? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement package supplied. This is a direct warning that future maintenance and support should not be expected.

Release historydanger

Only four releases were published, and none appeared in the last 12 months; the latest release was published about 6 years ago. This strongly indicates the package is no longer maintained.

Repo commit activitydanger

The repository had no commits and no active maintainers in the last 3 months. Together with the archived state, this confirms the lack of current development activity.

Repository archiveddanger

The linked repository is archived and was last pushed about 5 years ago. Archiving makes ongoing fixes and compatibility work unlikely.

Security policycaution

No repository security policy is reported. For a package whose latest release advertises a security fix, the absence of a published reporting path weakens transparency.

Vulnerabilities

TitleVersionsSeverity
CVE-2020-11070
t3g/svg-sanitizer is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 1.0.3.
0.0.0 - 1.0.3
Medium

Package versions

Maintainers

TYPO3 GmbH
Frank Nägler

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^8.7.13 || ^9.2 || ^10.1
—
—
typo3/cms-extbase
Version ^8.7.13 || ^9.2 || ^10.1
—
—
typo3/cms-install
Version ^8.7.13 || ^9.2 || ^10.1
—
—
enshrined/svg-sanitize
Version ^0.13.3
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform