MAL-2024-3154

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/tradingview-desktop/MAL-2024-3154.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-3154
Published
2024-06-25T13:04:40Z
Modified
2024-10-24T01:01:57Z
Summary
Malicious code in tradingview-desktop (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "id": "RLMA-2024-01911",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:04:40Z",
            "import_time": "2024-06-28T02:45:03.74444239Z",
            "versions": [
                "2.3.3"
            ],
            "sha256": "22014b9ff55f839692213f6e8a830e95e227959130b6237b9279c308be088b3a"
        },
        {
            "id": "RLUA-2024-07474",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:24:33Z",
            "import_time": "2024-10-24T00:58:28.294916126Z",
            "sha256": "6130a18ef86d76f0b41472c2516036d23ed8783d46aa59aef647b0612d270f3d"
        }
    ]
}
References
Credits

Affected packages

npm / tradingview-desktop

Package

Name
tradingview-desktop
View open source insights on deps.dev
Purl
pkg:npm/tradingview-desktop

Affected ranges

Affected versions

2.*

2.3.3