MAL-2024-3034

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/source-map-sync-tool/MAL-2024-3034.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-3034
Published
2024-06-25T13:01:34Z
Modified
2024-10-24T01:01:57Z
Summary
Malicious code in source-map-sync-tool (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "fb0f6731c00a8ad917cd966ac99d461143add03c2ff5a16441c83a6359f1bcb7",
            "import_time": "2024-06-28T02:44:46.609591199Z",
            "versions": [
                "1.0.0"
            ],
            "id": "RLMA-2024-01767",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:01:34Z"
        },
        {
            "sha256": "c3b71abd87d149672c5a82b3c2da06821fa16e8b3e06f02fdde780dd589cdcec",
            "import_time": "2024-10-24T00:58:21.647786132Z",
            "id": "RLUA-2024-07336",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:20:05Z"
        }
    ]
}
References
Credits

Affected packages

npm / source-map-sync-tool

Package

Name
source-map-sync-tool
View open source insights on deps.dev
Purl
pkg:npm/source-map-sync-tool

Affected ranges

Affected versions

1.*

1.0.0