{"id":"MAL-2024-6468","summary":"Malicious code in activerecord-forbid-implicit_connection_checkout (RubyGems)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","aliases":["GHSA-5vg4-8jr2-gwpp"],"modified":"2026-07-23T07:53:52.271367808Z","published":"2024-06-25T13:46:51Z","database_specific":{"malicious-packages-origins":[{"id":"RLMA-2024-05274","modified_time":"2024-06-25T13:46:51Z","versions":["1.0.0"],"source":"reversing-labs","sha256":"247db6ff2a68617aba5093137c8c7af76ed1ca312dc6ea0dd9958465217b35ce","import_time":"2024-06-28T02:51:41.189191388Z"},{"modified_time":"2024-10-16T14:57:35Z","source":"reversing-labs","sha256":"85da36d62d756be2a8c53b919f39579e28a0b4ea1d704d91513ca498dbf4016d","import_time":"2024-10-24T01:00:44.255365342Z","id":"RLUA-2024-09793"}]},"references":[{"type":"ARTICLE","url":"https://blog.reversinglabs.com/blog/mining-for-malicious-ruby-gems"}],"affected":[{"package":{"name":"activerecord-forbid-implicit_connection_checkout","ecosystem":"RubyGems","purl":"pkg:gem/activerecord-forbid-implicit_connection_checkout"},"versions":["1.0.0"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/activerecord-forbid-implicit_connection_checkout/MAL-2024-6468.json"}}],"schema_version":"1.7.5","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}