MAL-2024-2794

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/onewelcome-react-native-sdk/MAL-2024-2794.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-2794
Published
2024-06-25T12:54:07Z
Modified
2024-10-24T01:01:56Z
Summary
Malicious code in onewelcome-react-native-sdk (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "source": "reversing-labs",
            "modified_time": "2024-06-25T12:54:07Z",
            "versions": [
                "5.0.1"
            ],
            "sha256": "c11f74f8a7beab55eb09150ca3099153179d037c05d37d9f122c9729234c6be9",
            "id": "RLMA-2024-01503",
            "import_time": "2024-06-28T02:44:15.207698551Z"
        },
        {
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:08:57Z",
            "sha256": "441a36c89c8aca54d91d44df3ae498be081182a8d3b7b4539f29df6cded8e193",
            "id": "RLUA-2024-07015",
            "import_time": "2024-10-24T00:58:09.685477755Z"
        }
    ]
}
References
Credits

Affected packages

npm / onewelcome-react-native-sdk

Package

Name
onewelcome-react-native-sdk
View open source insights on deps.dev
Purl
pkg:npm/onewelcome-react-native-sdk

Affected ranges

Affected versions

5.*

5.0.1