Package Health

web-auth/cose-lib

Healthy and suitable to depend on. It has a long, active release history, current repository work, strong project hygiene, and clear organizational backing; maintenance is concentrated in one contributor but two others remain active.

Latest 4.8.2PackagistPackagist

88%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Are you affected? Scan for Free

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-246457 New
web-auth/cose-lib is vulnerable to Improper Verification of Cryptographic Signature in versions 0.0.1 - 4.7.1.
0.0.1 - 4.7.1
Medium
AIKIDO-2026-767492 New
web-auth/cose-lib is vulnerable to Uncontrolled Resource Consumption in versions 0.0.1 - 4.7.1.
0.0.1 - 4.7.1
Medium
AIKIDO-2026-747353 New
web-auth/cose-lib is vulnerable to Private Key Recovery in versions 2.1.0 - 4.7.1.
2.1.0 - 4.7.1
Medium

Package versions

Maintainers

Florent Morselli
All contributors

Direct Dependencies

DependencyLast ReleaseScore
brick/math
Version ^0.9 || ^0.10 || ^0.11 || ^0.12 || ^0.13 || ^0.14 || ^0.15 || ^0.16 || ^0.17 || ^0.18 || ^0.19 || ^0.20 || ^1.0
spomky-labs/pki-framework
Version ^1.0

Weekly Downloads

Info

Last Published
1 day ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform