MAL-2024-7767

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/@playsistemico/core/MAL-2024-7767.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-7767
Published
2024-07-17T12:17:59Z
Modified
2024-07-17T12:43:40Z
Summary
Malicious code in @playsistemico/core (npm)
Details

-= Per source details. Do not edit below this line.=-

Source: ossf-package-analysis (630104848acd582d628c24e45dc9472952d21452b641115bb0d9fd3eabb2a5dc)

The OpenSSF Package Analysis project identified '@playsistemico/core' @ 11.33.70 (npm) as malicious.

It is considered malicious because:

  • The package communicates with a domain associated with malicious activity.
Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "630104848acd582d628c24e45dc9472952d21452b641115bb0d9fd3eabb2a5dc",
            "import_time": "2024-07-17T12:43:05.493989558Z",
            "modified_time": "2024-07-17T12:17:59Z",
            "versions": [
                "11.33.70"
            ],
            "source": "ossf-package-analysis"
        },
        {
            "sha256": "ed3ebfa58bf7037fb6d8b993f26e902cc2d6fb96bceca0696796cac979cc27dc",
            "import_time": "2024-07-17T12:43:05.550101179Z",
            "modified_time": "2024-07-17T12:43:03Z",
            "versions": [
                "21.33.73"
            ],
            "source": "ossf-package-analysis"
        }
    ]
}
References
Credits

Affected packages

npm / @playsistemico/core

Package

Name
@playsistemico/core
View open source insights on deps.dev
Purl
pkg:npm/%40playsistemico/core

Affected ranges

Affected versions

11.*

11.33.70

21.*

21.33.73