Malicious Package Affecting artifact-lab-3-package-4c04b1a2 package, versions [0,]


Severity

Recommended
0.0
critical
0
10

CVSS assessment made by Snyk's Security Team

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk ID SNYK-PYTHON-ARTIFACTLAB3PACKAGE4C04B1A2-8145545
  • published 2 Oct 2024
  • disclosed 1 Oct 2024
  • credit OpenSSF: Package Analysis

Introduced: 1 Oct 2024

Malicious CVE NOT AVAILABLE CWE-506 Open this link in a new tab

How to fix?

Avoid using all malicious instances of the artifact-lab-3-package-4c04b1a2 package.

Overview

artifact-lab-3-package-4c04b1a2 is a malicious package. due to communicating with a domain associated with malicious activity. This behavior can lead to data breaches, unauthorized access, and potential exploitation of the systems utilizing this package.

CVSS Scores

version 4.0
version 3.1
Expand this section

Snyk

Recommended
9.3 critical
  • Attack Vector (AV)
    Network
  • Attack Complexity (AC)
    Low
  • Attack Requirements (AT)
    None
  • Privileges Required (PR)
    None
  • User Interaction (UI)
    None
  • Confidentiality (VC)
    High
  • Integrity (VI)
    High
  • Availability (VA)
    High
  • Confidentiality (SC)
    None
  • Integrity (SI)
    None
  • Availability (SA)
    None