MAL-2024-5386

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/multihttps/MAL-2024-5386.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-5386
Published
2024-06-25T13:37:25Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in multihttps (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "3d981b2efbc4d97115588ff8807a5e1b91d1f9871a76d254df9b6bf91a612cc4",
            "import_time": "2024-06-28T02:49:28.585661949Z",
            "versions": [
                "2.31.12",
                "2.32.4",
                "2.32.5",
                "2.32.1",
                "2.32.3"
            ],
            "id": "RLMA-2024-04168",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:37:25Z"
        },
        {
            "sha256": "6e0d1125412d226688f80928f7ee574a61ec1a6bf7bcfd9fd86344fddd7dc5cf",
            "import_time": "2024-10-24T00:59:28.989870989Z",
            "id": "RLUA-2024-08541",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:43:56Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / multihttps

Package

Affected ranges

Affected versions

2.*

2.31.12
2.32.1
2.32.3
2.32.4
2.32.5