MAL-2024-6843

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/cordova_rake/MAL-2024-6843.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-6843
Published
2024-06-25T13:50:22Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in cordova_rake (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "63acda108d61054e32cee237aceeec89663dc69db5eb5431093605092ffd9122",
            "import_time": "2024-06-28T02:52:25.936809119Z",
            "versions": [
                "0.5.2"
            ],
            "id": "RLMA-2024-05649",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:50:22Z"
        },
        {
            "sha256": "ea3efd9f5fd2226cbbac709f8b1484c13ec78e4010f9a3d92b25b8ff7e460ab0",
            "import_time": "2024-10-24T01:01:11.520249653Z",
            "id": "RLUA-2024-10168",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T15:02:31Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / cordova_rake

Package

Name
cordova_rake
Purl
pkg:gem/cordova_rake

Affected ranges

Affected versions

0.*

0.5.2