MAL-2024-6642

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/applicant-tracking_api/MAL-2024-6642.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-6642
Published
2024-06-25T13:48:33Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in applicant-tracking_api (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "ff949fa5772b87f444321398c8083d16e265ad92f3f449a753b14380adab62ea",
            "import_time": "2024-06-28T02:52:02.004935691Z",
            "versions": [
                "1.0.0"
            ],
            "id": "RLMA-2024-05448",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:48:33Z"
        },
        {
            "sha256": "662f70e83aa247949d027dee44f4b6b3362529d9af3e34cec0e4d9b4855a8f7b",
            "import_time": "2024-10-24T01:00:56.641545775Z",
            "id": "RLUA-2024-09967",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:59:51Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / applicant-tracking_api

Package

Name
applicant-tracking_api
Purl
pkg:gem/applicant-tracking_api

Affected ranges

Affected versions

1.*

1.0.0