MAL-2024-7032

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/taxjar-bundler/MAL-2024-7032.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-7032
Published
2024-06-25T13:52:16Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in taxjar-bundler (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "de83691db139f081e0e3bfb63da985c0182940afe168cc3681fd94989afb2916",
            "import_time": "2024-06-28T02:52:47.665383175Z",
            "versions": [
                "23.55.0"
            ],
            "id": "RLMA-2024-05837",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:52:16Z"
        },
        {
            "sha256": "cc145d34dd0c1b5fcd3b520490bd382daf8866177a59f070d621300cb621f9a1",
            "import_time": "2024-10-24T01:01:24.605213203Z",
            "id": "RLUA-2024-10358",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T15:04:56Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / taxjar-bundler

Package

Name
taxjar-bundler
Purl
pkg:gem/taxjar-bundler

Affected ranges

Affected versions

23.*

23.55.0