MAL-2024-2674

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/mpx-monorepo/MAL-2024-2674.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-2674
Published
2024-06-25T12:50:49Z
Modified
2024-10-24T01:01:56Z
Summary
Malicious code in mpx-monorepo (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "1a1b21828ebf70b7f38008838c524fae775adeda2f2d7a7e4d75c847a10adaaa",
            "import_time": "2024-06-28T02:43:58.19377226Z",
            "versions": [
                "2.8.0"
            ],
            "id": "RLMA-2024-01363",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T12:50:49Z"
        },
        {
            "sha256": "6e9ae4f1309160f3fd841d73272dcd515ac127a525e613010dc229fc6a002f2a",
            "import_time": "2024-10-24T00:58:05.533723023Z",
            "id": "RLUA-2024-06922",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:04:39Z"
        }
    ]
}
References
Credits

Affected packages

npm / mpx-monorepo

Package

Affected ranges

Affected versions

2.*

2.8.0