MAL-2024-6694

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/assembla-cli/MAL-2024-6694.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-6694
Published
2024-06-25T13:49:02Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in assembla-cli (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "caf560272fc49646af603f3f58fff7e7c4256fc4b419bb1192155c8fd98dafda",
            "import_time": "2024-06-28T02:52:08.102392714Z",
            "versions": [
                "0.0.2"
            ],
            "id": "RLMA-2024-05500",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:49:02Z"
        },
        {
            "sha256": "170145b8f058ab073fc22827bbb0c9698452d8d9b5d1a9bd6d3bb786c8147a92",
            "import_time": "2024-10-24T01:01:00.464656106Z",
            "id": "RLUA-2024-10019",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T15:00:32Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / assembla-cli

Package

Name
assembla-cli
Purl
pkg:gem/assembla-cli

Affected ranges

Affected versions

0.*

0.0.2