{"id":"MAL-2024-5866","summary":"Malicious code in reqeustx (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","aliases":["SNYK-PYTHON-REQEUSTX-6513658"],"modified":"2024-10-24T01:01:59Z","published":"2024-06-25T13:41:26Z","database_specific":{"malicious-packages-origins":[{"versions":["1.0.0"],"id":"RLMA-2024-04667","import_time":"2024-06-28T02:50:27.444120966Z","modified_time":"2024-06-25T13:41:26Z","sha256":"40ee3aed138eaca4c66a5e45af3122eb5b19ed0e25a99e06ccda88211fdfa5e0","source":"reversing-labs"},{"id":"RLUA-2024-09126","import_time":"2024-10-24T01:00:01.791199548Z","modified_time":"2024-10-16T14:49:56Z","sha256":"cecbbc0bed9247b02f04ff0eb7f7cc8f148c0950c2959d2378c3826666da41a3","source":"reversing-labs"}]},"references":[{"type":"ADVISORY","url":"https://security.snyk.io/vuln/SNYK-PYTHON-REQEUSTX-6513658"},{"type":"ARTICLE","url":"https://medium.com/checkmarx-security/pypi-is-under-attack-project-creation-and-user-registration-suspended-heres-the-details-c3b6291d4579"}],"affected":[{"package":{"name":"reqeustx","ecosystem":"PyPI","purl":"pkg:pypi/reqeustx"},"versions":["1.0.0"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/reqeustx/MAL-2024-5866.json"}}],"schema_version":"1.7.3","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}