MAL-2024-5372

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/mnemonic-to-address/MAL-2024-5372.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-5372
Published
2024-06-25T13:37:18Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in mnemonic-to-address (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "970ee756a56a3f8bdbd88fa48f94b61456da06fc15fe128b8d42bfa67fe974fa",
            "import_time": "2024-06-28T02:49:26.977114001Z",
            "versions": [
                "1.2.8",
                "1.2.7",
                "1.0.0"
            ],
            "id": "RLMA-2024-04154",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:37:18Z"
        },
        {
            "sha256": "e9db15683262980ce81b41fc7bb9b35d41bc44f610e7f2be7b369ca93654a38a",
            "import_time": "2024-10-24T00:59:27.991084742Z",
            "id": "RLUA-2024-08525",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:43:47Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / mnemonic-to-address

Package

Name
mnemonic-to-address
View open source insights on deps.dev
Purl
pkg:pypi/mnemonic-to-address

Affected ranges

Affected versions

1.*

1.0.0
1.2.7
1.2.8