MAL-2024-4952

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/colored-upgrade/MAL-2024-4952.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-4952
Published
2024-06-25T13:33:54Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in colored-upgrade (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "4f793e4bcc01f4ef316a88f7652910631239ad73a43a0cfadc1a545b7877c999",
            "id": "RLMA-2024-03732",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:33:54Z",
            "import_time": "2024-06-28T02:48:37.303954957Z",
            "versions": [
                "0.0.1"
            ]
        },
        {
            "sha256": "35ae93f04d9a9bfb896a9ca4cfd466df9665af931f23867ae665df1e1b3d30c5",
            "id": "RLUA-2024-08024",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:38:31Z",
            "import_time": "2024-10-24T00:58:58.897215014Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / colored-upgrade

Package

Affected ranges

Affected versions

0.*
0.0.1

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/colored-upgrade/MAL-2024-4952.json"