Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2024-12-02 05:12:01 +00:00
parent 3a53f7a83f
commit d1b640d076
954 changed files with 1693 additions and 5079 deletions
@@ -3,9 +3,7 @@
"id": "GHSA-255r-pghp-r5wh",
"modified": "2021-10-01T21:02:17Z",
"published": "2020-09-03T17:05:34Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in hdeky",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-28f4-mjfq-qrvf",
"modified": "2021-09-29T21:26:03Z",
"published": "2020-09-03T22:18:40Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in buffes-xor",
"details": "Version 2.0.2 contained malicious code. The package targeted the Ethereum cryptocurrency and performed transactions to wallets not controlled by the user.\n\n\n## Recommendation\n\nRemove the package from your environment. Ensure no Ethereum funds were compromised.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-29fh-xcjr-p7rx",
"modified": "2021-10-04T19:10:02Z",
"published": "2020-09-03T17:02:22Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in web3-eht",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-2fwq-wx47-hm6x",
"modified": "2021-10-01T20:30:20Z",
"published": "2020-09-04T15:31:39Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in bcion",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-2jm5-2cqf-6vw9",
"modified": "2021-10-01T20:29:19Z",
"published": "2020-09-04T15:30:32Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in baes-x",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,14 +3,10 @@
"id": "GHSA-2mj8-pj3j-h362",
"modified": "2020-08-31T18:59:12Z",
"published": "2020-09-04T17:17:39Z",
"aliases": [
],
"aliases": [],
"summary": "Symlink reference outside of node_modules in bin-links",
"details": "Versions of `bin-links` prior to 1.1.5 are vulnerable to a Symlink reference outside of node_modules. It is possible to create symlinks to files outside of the`node_modules` folder through the `bin` field. This may allow attackers to access unauthorized files.\n\n\n## Recommendation\n\nUpgrade to version 1.1.5 or later.",
"severity": [
],
"severity": [],
"affected": [
{
"package": {
@@ -39,9 +35,7 @@
}
],
"database_specific": {
"cwe_ids": [
],
"cwe_ids": [],
"severity": "LOW",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:59:12Z",
@@ -3,9 +3,7 @@
"id": "GHSA-2mxc-m4c3-wqhq",
"modified": "2021-09-30T16:18:32Z",
"published": "2020-09-03T22:50:46Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in ruffer-xor",
"details": "Version 2.0.2 contained malicious code. The package targeted the Ethereum cryptocurrency and performed transactions to wallets not controlled by the user.\n\n\n## Recommendation\n\nRemove the package from your environment. Ensure no Ethereum funds were compromised.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-2w8q-69fh-9gq6",
"modified": "2021-09-29T21:27:54Z",
"published": "2020-09-03T22:25:09Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in bufger-xor",
"details": "Version 2.0.2 contained malicious code. The package targeted the Ethereum cryptocurrency and performed transactions to wallets not controlled by the user.\n\n\n## Recommendation\n\nRemove the package from your environment. Ensure no Ethereum funds were compromised.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-36r8-9qq7-mh43",
"modified": "2021-10-04T19:09:44Z",
"published": "2020-09-03T17:02:40Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in we3b",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-37vc-gwvp-6cgv",
"modified": "2021-10-01T20:39:59Z",
"published": "2020-09-04T15:42:49Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in bitcoijns-lib",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-3cpj-mj3q-82wr",
"modified": "2021-10-01T20:49:46Z",
"published": "2020-09-04T16:49:43Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in bs58chek",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,14 +3,10 @@
"id": "GHSA-3gpc-w23c-w59w",
"modified": "2021-04-21T19:45:42Z",
"published": "2020-09-04T15:02:06Z",
"aliases": [
],
"aliases": [],
"summary": "Sandbox Breakout / Arbitrary Code Execution in pitboss-ng",
"details": "All versions of `pitboss-ng` are vulnerable to Sandbox Escape leading to Remote Code Execution. The package fails to restrict access to the main context through `this.constructor.constructor` . This may allow attackers to execute arbitrary code in the system. Evaluating the payload `this.constructor.constructor('return process.env')()` prints the contents of `process.env`.\n \n## Recommendation\n\nNo fix is currently available. Consider using an alternative package until a fix is made available.",
"severity": [
],
"severity": [],
"affected": [
{
"package": {
@@ -39,9 +35,7 @@
}
],
"database_specific": {
"cwe_ids": [
],
"cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:55:00Z",
@@ -3,9 +3,7 @@
"id": "GHSA-3h99-v4qw-p2h5",
"modified": "2021-10-01T20:57:40Z",
"published": "2020-09-03T19:41:56Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in coinpayment",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-3h9m-9g3g-5wqx",
"modified": "2021-09-29T21:13:02Z",
"published": "2020-09-03T22:13:14Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in buffer-xov",
"details": "Version 2.0.2 contained malicious code. The package targeted the Ethereum cryptocurrency and performed transactions to wallets not controlled by the user.\n\n\n## Recommendation\n\nRemove the package from your environment. Ensure no Ethereum funds were compromised.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-3mhm-jvqj-fvhg",
"modified": "2021-09-30T17:14:42Z",
"published": "2020-09-03T23:09:37Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in js-sia3",
"details": "Version 0.8.0 contained malicious code. The package targeted the Ethereum cryptocurrency and performed transactions to wallets not controlled by the user.\n\n\n## Recommendation\n\nRemove the package from your environment. Ensure no Ethereum funds were compromised.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-435c-qcpm-wjw5",
"modified": "2021-10-01T21:02:01Z",
"published": "2020-09-03T17:05:43Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in fs-extar",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-4363-x42f-xph6",
"modified": "2021-10-01T21:03:00Z",
"published": "2020-09-03T17:05:14Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in hw-trnasport-u2f",
"details": "All versions of this package contained malware. The package was designed to find and exfiltrate cryptocurrency wallets.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-49c6-3wr4-8jr4",
"modified": "2021-10-01T20:07:48Z",
"published": "2020-09-04T15:05:26Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in malicious-npm-package",
"details": "All versions of `malicious-npm-package` contain malicious code. The malware targets Windows systems. It runs a powershell command that downloads an executable file from a remote server and runs it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-4fqg-89cc-5pv5",
"modified": "2021-10-01T17:21:38Z",
"published": "2020-09-04T14:58:44Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in sj-labc",
"details": "All versions of `sj-labc` contain malicious code. The package downloads and runs a script that opens a reverse shell in the system.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
@@ -3,9 +3,7 @@
"id": "GHSA-4hfc-fv33-ph9p",
"modified": "2021-10-01T16:15:37Z",
"published": "2020-09-03T23:26:33Z",
"aliases": [
],
"aliases": [],
"summary": "Malicious Package in sj-tw-abc",
"details": "All versions of `sj-tw-abc` contain malicious code. The package downloads and runs a script that opens a reverse shell in the system.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [

Some files were not shown because too many files have changed in this diff Show More