MAL-2024-2416

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/get-current-env/MAL-2024-2416.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-2416
Aliases
  • GHSA-p23r-4795-8hgf
  • MAL-2024-9
  • SNYK-JS-MSMGMONEYGETCURRENTENV-6141149
Published
2024-06-25T12:21:18Z
Modified
2024-10-24T01:26:49.682431Z
Summary
Malicious code in get-current-env (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "05362eee15ea29ec4db518cd1c02dedfad483bab65f97c84d5695613ac1d3455",
            "import_time": "2024-06-28T02:43:22.282965831Z",
            "versions": [
                "99.99.99"
            ],
            "id": "RLMA-2024-01076",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T12:44:09Z"
        },
        {
            "sha256": "76d5b806cc377f7f2c154e78ff51b7704dcd7c1cff7c82dbe4ab154901951d7a",
            "import_time": "2024-10-24T00:57:52.725083741Z",
            "id": "RLUA-2024-06629",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T12:54:32Z"
        }
    ]
}
References
Credits

Affected packages

npm / get-current-env

Package

Affected ranges

Affected versions

99.*

99.99.99