{"id":"MAL-2024-5820","summary":"Malicious code in pythonpathenv (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","aliases":["SNYK-PYTHON-PYTHONPATHENV-6129563"],"modified":"2024-10-24T01:01:59Z","published":"2024-06-25T13:41:02Z","database_specific":{"malicious-packages-origins":[{"source":"reversing-labs","id":"RLMA-2024-04618","sha256":"39b447e19fed5a6c47095da8b0e19139927b121be9fcdeb45cca3abb0ed00b5f","versions":["2.9"],"modified_time":"2024-06-25T13:41:02Z","import_time":"2024-06-28T02:50:21.495341268Z"},{"source":"reversing-labs","id":"RLUA-2024-09059","sha256":"451e50db9cce53f4191a3a90af56338a6c6dbeca90769571ce23ddd31a61974c","modified_time":"2024-10-16T14:49:14Z","import_time":"2024-10-24T00:59:58.568338709Z"}]},"references":[{"type":"ADVISORY","url":"https://security.snyk.io/vuln/SNYK-PYTHON-PYTHONPATHENV-6129563"},{"type":"ARTICLE","url":"https://www.welivesecurity.com/en/eset-research/pernicious-potpourri-python-packages-pypi/"}],"affected":[{"package":{"name":"pythonpathenv","ecosystem":"PyPI","purl":"pkg:pypi/pythonpathenv"},"versions":["2.9"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/pythonpathenv/MAL-2024-5820.json"}}],"schema_version":"1.7.3","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}