MAL-2024-2635

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/lodashinc/MAL-2024-2635.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-2635
Published
2024-06-25T12:49:34Z
Modified
2024-10-24T01:01:56Z
Summary
Malicious code in lodashinc (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "d17b493238fb0e7c940d50b02b4717390433dc026e8132f1e2eadab7eda6cb90",
            "import_time": "2024-06-28T02:43:51.980229346Z",
            "versions": [
                "8.0.1"
            ],
            "id": "RLMA-2024-01313",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T12:49:34Z"
        },
        {
            "sha256": "3fe1dea468d60bdb31896073ce3e6d9f5185af9e9625395a48378cbe18fbe722",
            "import_time": "2024-10-24T00:58:03.519835583Z",
            "id": "RLUA-2024-06860",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:02:34Z"
        }
    ]
}
References
Credits

Affected packages

npm / lodashinc

Package

Affected ranges

Affected versions

8.*

8.0.1