{"id":"MAL-2025-192913","summary":"Malicious code in prometheus_gcstat (RubyGems)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","aliases":["GHSA-72qc-7wh3-cmf2"],"modified":"2026-09-24T09:02:29.406116511Z","published":"2025-12-23T08:41:04Z","database_specific":{"malicious-packages-origins":[{"sha256":"b01ed7b6d0289ead98b36ebac0f63ad051355b7281e7c7588fc05aeb19b069dc","source":"reversing-labs","versions":["0.0.900","0.1.900","0.900.0","1.900","9002.0"],"id":"RLMA-2025-06623","import_time":"2025-12-24T10:07:32.595828811Z","modified_time":"2025-12-23T08:41:04Z"},{"import_time":"2026-09-24T08:48:36.585021793Z","modified_time":"2026-09-22T16:36:56Z","sha256":"9eecfb8be9b36450735bd80fd62c0935f3e36c37627a3a7643ab1056a9eb5289","source":"reversing-labs","id":"RLUA-2026-08954"}]},"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-72qc-7wh3-cmf2"}],"affected":[{"package":{"name":"prometheus_gcstat","ecosystem":"RubyGems","purl":"pkg:gem/prometheus_gcstat"},"versions":["0.0.900","0.1.900","0.900.0","1.900","9002.0"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/prometheus_gcstat/MAL-2025-192913.json"}}],"schema_version":"1.9.0","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}