MAL-2024-5416

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/not-so-evil-package-spaceylad/MAL-2024-5416.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-5416
Published
2024-06-25T13:37:39Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in not-so-evil-package-spaceylad (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "ab078f5a70cdc0911977b42fcb5b57d2e42fab5b6f671f108b92f8f8d04cde82",
            "import_time": "2024-06-28T02:49:32.159716418Z",
            "versions": [
                "0.0.5",
                "0.0.1",
                "0.0.7",
                "0.0.3",
                "0.0.2",
                "0.0.4",
                "0.0.6"
            ],
            "id": "RLMA-2024-04198",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:37:39Z"
        },
        {
            "sha256": "71f98113dd7411d346b3a3996d7f89221a6dca96a2cc33f28024b5b61d24cf50",
            "import_time": "2024-10-24T00:59:31.10951289Z",
            "id": "RLUA-2024-08572",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:44:16Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / not-so-evil-package-spaceylad

Package

Name
not-so-evil-package-spaceylad
View open source insights on deps.dev
Purl
pkg:pypi/not-so-evil-package-spaceylad

Affected ranges

Affected versions

0.*

0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7