DEV Community

Michael Kayode Onyekwere
Michael Kayode Onyekwere

Posted on

AGENTSCORE-2026-0020: `@staticn0va/wigolo` risk change detected

@staticn0va/wigolo updated from 0.6.6 to 1.0.0. Score changed 80/100 to 70/100 (-10). Risk: MODERATE to MODERATE. 2 findings.

Package

  • Name: @staticn0va/wigolo
  • Version: 0.6.6 to 1.0.0
  • Score: 80/100 to 70/100
  • Risk: MODERATE to MODERATE

Findings

  • [MEDIUM] excessive_dependencies: Package has 26 runtime dependencies (high attack surface)
  • [HIGH] command_injection: Potential command injection: shell execution with template literal input

Full advisory: AGENTSCORE-2026-0020

Verdict API: curl https://agentscores.xyz/api/verdict?npm=%40staticn0va%2Fwigolo

Auto-published by AgentScore MCP security monitoring.

Top comments (0)