MAL-2024-2977

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/rush-command-parameters-plugin/MAL-2024-2977.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-2977
Published
2024-06-25T12:59:34Z
Modified
2024-10-24T01:01:57Z
Summary
Malicious code in rush-command-parameters-plugin (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "a27fc582c5b8b43f7c99b44f136c438e3bc6b4490eda60e3a2f3fed674b255b2",
            "import_time": "2024-06-28T02:44:39.246963331Z",
            "versions": [
                "1.0.0"
            ],
            "id": "RLMA-2024-01702",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T12:59:34Z"
        },
        {
            "sha256": "6fca916274e1c4203a2089a50ca814e7ee57ec212cdc1a47b2c778f946b19c86",
            "import_time": "2024-10-24T00:58:18.875580495Z",
            "id": "RLUA-2024-07233",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:16:50Z"
        }
    ]
}
References
Credits

Affected packages

npm / rush-command-parameters-plugin

Package

Name
rush-command-parameters-plugin
View open source insights on deps.dev
Purl
pkg:npm/rush-command-parameters-plugin

Affected ranges

Affected versions

1.*

1.0.0