MAL-2024-4611

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/nuget/paypalmerchant.sdk/MAL-2024-4611.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-4611
Published
2024-06-25T13:30:48Z
Modified
2024-10-24T01:01:57Z
Summary
Malicious code in PayPalMerchant.SDK (NuGet)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "4f046e828f500880607b1c373daadc3e5248a1da9426afbcf38b00121ac8a46c",
            "import_time": "2024-06-28T02:47:59.210995879Z",
            "versions": [
                "3.40.25",
                "3.40.26",
                "3.40.27",
                "3.40.24",
                "3.40.4",
                "3.40.29",
                "3.40.21",
                "3.40.12",
                "3.40.5",
                "3.40.30",
                "3.40.20",
                "45.51.1",
                "3.40.13",
                "3.40.11",
                "3.40.22",
                "3.40.17",
                "45.40.8",
                "45.40.7",
                "3.40.8",
                "3.40.10",
                "2.16.250",
                "3.40.9",
                "3.40.15",
                "3.40.1",
                "3.40.28",
                "3.40.16",
                "3.40.18",
                "3.40.14",
                "45.40.6",
                "3.40.7",
                "3.40.3",
                "3.40.23",
                "45.41.0",
                "3.40.19",
                "3.40.2",
                "3.40.6",
                "3.40.0",
                "45.51.0",
                "45.40.9"
            ],
            "id": "RLMA-2024-03400",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:30:48Z"
        },
        {
            "sha256": "f2b708691b7e2a2bc5eaac305dc06ed3400a09dffa4423758a6757334571ec7e",
            "import_time": "2024-10-24T00:58:40.611827776Z",
            "id": "RLUA-2024-07713",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T13:48:20Z"
        }
    ]
}
References
Credits

Affected packages

NuGet / PayPalMerchant.SDK

Package

Name
PayPalMerchant.SDK
View open source insights on deps.dev
Purl
pkg:nuget/PayPalMerchant.SDK

Affected ranges

Affected versions

2.*

2.16.250

3.*

3.40.0
3.40.1
3.40.2
3.40.3
3.40.4
3.40.5
3.40.6
3.40.7
3.40.8
3.40.9
3.40.10
3.40.11
3.40.12
3.40.13
3.40.14
3.40.15
3.40.16
3.40.17
3.40.18
3.40.19
3.40.20
3.40.21
3.40.22
3.40.23
3.40.24
3.40.25
3.40.26
3.40.27
3.40.28
3.40.29
3.40.30

45.*

45.40.6
45.40.7
45.40.8
45.40.9
45.41.0
45.51.0
45.51.1