MAL-2024-9486

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/@vertiv-co/voidray-sdk-addon-disk-image-write/MAL-2024-9486.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-9486
Published
2024-10-16T12:26:00Z
Modified
2024-10-16T12:26:00Z
Summary
Malicious code in @vertiv-co/voidray-sdk-addon-disk-image-write (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "modified_time": "2024-10-16T12:26:00Z",
            "import_time": "2024-10-24T00:56:09.55163841Z",
            "versions": [
                "1.14.0"
            ],
            "id": "RLMA-2024-06071",
            "source": "reversing-labs",
            "sha256": "46b59fa70d7f997ff2f1f1d8d76d783c8da756f5b3e70667cf5c0d162f16ce0c"
        }
    ]
}
References
Credits

Affected packages

npm / @vertiv-co/voidray-sdk-addon-disk-image-write

Package

Name
@vertiv-co/voidray-sdk-addon-disk-image-write
View open source insights on deps.dev
Purl
pkg:npm/%40vertiv-co/voidray-sdk-addon-disk-image-write

Affected ranges

Affected versions

1.*

1.14.0