MAL-2024-5349

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/manyhttp/MAL-2024-5349.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-5349
Published
2024-06-25T13:37:07Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in manyhttp (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "modified_time": "2024-06-25T13:37:07Z",
            "versions": [
                "2.33.15",
                "2.33.16",
                "2.33.14",
                "2.33.17",
                "2.33.18"
            ],
            "sha256": "3596d2e789daa6d136346943c1e823375749899e8cd617b3d972f683f21784e0",
            "id": "RLMA-2024-04131",
            "source": "reversing-labs",
            "import_time": "2024-06-28T02:49:24.371034286Z"
        },
        {
            "modified_time": "2024-10-16T14:43:29Z",
            "sha256": "63a1aa6ef7bc7500273e4d5d9cea293fac9106633d6abe022246999fdc9ddd26",
            "id": "RLUA-2024-08496",
            "source": "reversing-labs",
            "import_time": "2024-10-24T00:59:26.377847752Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / manyhttp

Package

Affected ranges

Affected versions

2.*
2.33.14
2.33.15
2.33.16
2.33.17
2.33.18

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/manyhttp/MAL-2024-5349.json"