MAL-2025-47813

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/worldnex/MAL-2025-47813.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2025-47813
Published
2025-09-26T09:14:49Z
Modified
2025-10-27T18:09:49Z
Summary
Malicious code in worldnex (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "43413b82a056337ea01a40c52f81c77593b6e362a0f7402ef8f2bfa1b52cedc0",
            "source": "reversing-labs",
            "modified_time": "2025-09-26T09:14:49Z",
            "id": "RLMA-2025-04823",
            "versions": [
                "1.0.2",
                "1.0.3",
                "1.0.4",
                "1.0.5",
                "1.0.6",
                "1.0.7"
            ],
            "import_time": "2025-09-26T11:05:36.955768275Z"
        },
        {
            "sha256": "547bfc641fa3fdf5d3e96968cb590b62654032a00c0e366f5420418bc2f6cd7a",
            "source": "reversing-labs",
            "modified_time": "2025-10-23T19:17:22Z",
            "id": "RLUA-2025-05230",
            "versions": [
                "1.1.0",
                "2.0.0",
                "2.0.1"
            ],
            "import_time": "2025-10-27T18:09:10.150223617Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / worldnex

Package

Affected ranges

Affected versions

1.*
1.0.2
1.0.3
1.0.4
1.0.5
1.0.6
1.0.7
1.1.0
2.*
2.0.0
2.0.1

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/worldnex/MAL-2025-47813.json"