MAL-2024-3137

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/tools-access-express/MAL-2024-3137.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-3137
Aliases
  • SNYK-JS-TOOLSACCESSEXPRESS-3326405
Published
2024-06-25T13:04:21Z
Modified
2024-10-24T01:01:57Z
Summary
Malicious code in tools-access-express (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "b100ddb1eee212a5e53608774a6b98c4e3f3f3e99271654c7ad168bfb9c0cfd1",
            "import_time": "2024-06-28T02:45:01.562961963Z",
            "versions": [
                "4.1.8",
                "4.1.7",
                "4.8.7"
            ],
            "id": "RLMA-2024-01895",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:04:21Z"
        },
        {
            "sha256": "bac6b3fd2406820f92933fda589e759f4299631bba8466013435bd948a8c0d2a",
            "import_time": "2024-10-24T00:58:27.67055919Z",
            "id": "RLUA-2024-07463",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:24:06Z"
        }
    ]
}
References
Credits

Affected packages

npm / tools-access-express

Package

Name
tools-access-express
View open source insights on deps.dev
Purl
pkg:npm/tools-access-express

Affected ranges

Affected versions

4.*

4.1.7
4.1.8
4.8.7