{"id":"MAL-2026-1920","summary":"Malicious code in rails_structured_logging (RubyGems)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","aliases":["GHSA-8279-74vj-vmc5"],"modified":"2026-09-01T11:31:23.825934941Z","published":"2026-03-18T12:21:55Z","database_specific":{"malicious-packages-origins":[{"import_time":"2026-03-19T12:18:21.080427008Z","modified_time":"2026-03-18T12:21:55Z","sha256":"058e3f71b987da51ad1a7119ad4fd3debc218b0c5db26c84b18ae164af9c7592","source":"reversing-labs","versions":["0.0.4","0.1.1","0.1.2","0.2.1"],"id":"RLMA-2026-00956"},{"sha256":"e8a51316b86e1994067d18c1ef18a0148acd68672e86658c17d99f391ed6bee7","source":"reversing-labs","versions":["1.0.2","1.0.0","1.0.1"],"id":"RLUA-2026-05395","import_time":"2026-07-20T13:14:55.201157497Z","modified_time":"2026-07-20T10:14:58Z"},{"modified_time":"2026-08-24T16:15:48Z","sha256":"4c702e66fa565ab25d3f0ce49ce98033d0a9ee89d8ef1e1206bd1f09582ec567","source":"reversing-labs","id":"RLUA-2026-05742","import_time":"2026-09-01T11:17:36.20082355Z"}]},"references":[{"type":"WEB","url":"https://intel.aikido.dev/?tab=malware"},{"type":"WEB","url":"https://intel.aikido.dev/malware?ecosystem=ruby"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-8279-74vj-vmc5"}],"affected":[{"package":{"name":"rails_structured_logging","ecosystem":"RubyGems","purl":"pkg:gem/rails_structured_logging"},"versions":["0.0.4","0.1.1","0.1.2","0.2.1","1.0.2","1.0.0","1.0.1"],"database_specific":{"cwes":[{"description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code","cweId":"CWE-506"}],"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/rails_structured_logging/MAL-2026-1920.json"}}],"schema_version":"1.9.0","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}