MAL-2024-5040

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/dependency-confusion12/MAL-2024-5040.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-5040
Published
2024-06-25T13:34:36Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in dependency-confusion12 (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "9effbc093be2065cbcaece554967e70dc52a060c36145856988f7c17c384c70b",
            "import_time": "2024-06-28T02:48:47.184546377Z",
            "versions": [
                "1.0.4"
            ],
            "id": "RLMA-2024-03820",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:34:36Z"
        },
        {
            "sha256": "ec113c2964cd9fc2834e482ad3801d72509fdf672f089e04e64773ca3f0b352c",
            "import_time": "2024-10-24T00:59:05.401235647Z",
            "id": "RLUA-2024-08116",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:39:30Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / dependency-confusion12

Package

Name
dependency-confusion12
View open source insights on deps.dev
Purl
pkg:pypi/dependency-confusion12

Affected ranges

Affected versions

1.*

1.0.4