Lucene search

K
osvGoogleOSV:MAL-2024-1643
HistoryJun 19, 2024 - 1:22 p.m.

Malicious code in quickwebbasicauth (PyPI)

2024-06-1913:22:00
Google
osv.dev
malicious behavior
pypi
software

7.4 High

AI Score

Confidence

High


-= Per source details. Do not edit below this line.=-

Source: ossf-package-analysis (e8ebea7be43f522c7fd45c4793bcac3b33c5ffafa2dc9ea3e0f28657bc650819)

The OpenSSF Package Analysis project identified β€˜quickwebbasicauth’ @ 2.3.2 (pypi) as malicious.

It is considered malicious because:

  • The package executes one or more commands associated with malicious behavior.
CPENameOperatorVersion
quickwebbasicautheq2.3.2

7.4 High

AI Score

Confidence

High