MAL-2024-130

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/noblox.js-proxy-server/MAL-2024-130.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-130
Published
2024-01-16T23:40:53Z
Modified
2024-01-18T03:34:20Z
Summary
Malicious code in noblox.js-proxy-server (npm)
Details

-= Per source details. Do not edit below this line.=-

Source: ossf-package-analysis (2b3d7766d2ada5a6d17ae9ae430365649d4034341202ba6fc6a07a0ab6a553fb)

The OpenSSF Package Analysis project identified 'noblox.js-proxy-server' @ 4.15.1 (npm) as malicious.

It is considered malicious because:

  • The package communicates with a domain associated with malicious activity.
References
Credits

Affected packages

npm / noblox.js-proxy-server

Package

Name
noblox.js-proxy-server
View open source insights on deps.dev
Purl
pkg:npm/noblox.js-proxy-server

Affected ranges

Affected versions

4.*

4.15.1
4.15.3
4.15.4