MAL-2024-6800

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/cafepress-api/MAL-2024-6800.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-6800
Published
2024-06-25T13:49:58Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in cafepress-api (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "249a5b27c3d6ebe234df77f8273c7f6d1ee25f26653e1e5727ee4139667a5b35",
            "import_time": "2024-06-28T02:52:20.799615187Z",
            "versions": [
                "0.3.2"
            ],
            "id": "RLMA-2024-05606",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:49:58Z"
        },
        {
            "sha256": "4fa809bc5ac43e19986719cae67dfd7d48c8b8de685f50a5e9c80de2b0b95722",
            "import_time": "2024-10-24T01:01:08.417270529Z",
            "id": "RLUA-2024-10125",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T15:01:57Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / cafepress-api

Package

Name
cafepress-api
Purl
pkg:gem/cafepress-api

Affected ranges

Affected versions

0.*

0.3.2