MAL-2024-6440

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/active-search/MAL-2024-6440.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-6440
Published
2024-06-25T13:46:34Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in active-search (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "98587482ad3b0217a7d5d0aa9801997998abc44f40a4b08a3edfcb64b87c0fe4",
            "import_time": "2024-06-28T02:51:38.04090312Z",
            "versions": [
                "1.0.1"
            ],
            "id": "RLMA-2024-05247",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:46:34Z"
        },
        {
            "sha256": "c7098361990511851baac6b8fec45034a9fe03e0a136997d8ea5e62f8e5cc37d",
            "import_time": "2024-10-24T01:00:42.203274128Z",
            "id": "RLUA-2024-09766",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:57:11Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / active-search

Package

Name
active-search
Purl
pkg:gem/active-search

Affected ranges

Affected versions

1.*

1.0.1