MAL-2024-2526

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/instant-plugin/MAL-2024-2526.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-2526
Published
2024-06-25T12:46:56Z
Modified
2024-10-24T01:01:56Z
Summary
Malicious code in instant-plugin (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "bd92eefc609b7280bc2d59e9a786fe6a1a0884e9eee6aa5ae63f5bb6bd973199",
            "import_time": "2024-06-28T02:43:36.782033821Z",
            "versions": [
                "0.0.1",
                "57.9.2",
                "1.0.1",
                "2.0.0"
            ],
            "id": "RLMA-2024-01195",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T12:46:56Z"
        },
        {
            "sha256": "0f363ea1269a9c9e01e9b69df81d04f37e064b653e0a661df4309df3f02866a8",
            "import_time": "2024-10-24T00:57:58.153489794Z",
            "id": "RLUA-2024-06742",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T12:58:47Z"
        }
    ]
}
References
Credits

Affected packages

npm / instant-plugin

Package

Affected ranges

Affected versions

0.*

0.0.1

1.*

1.0.1

2.*

2.0.0

57.*

57.9.2