mal-2026-16466

osv_rubygems
Description

--- _-= Per source details. Do not edit below this line.=-_ ## Source: ossf-package-analysis (17d2e80b42383fadbe9bde12ef17decad8b9dfa9b48f93b6e7f9162091e2a69d) The OpenSSF Package Analysis project identified 'wurl_show_data' @ 3.1.42.99 (rubygems) as malicious. It is considered malicious because: - The package executes one or more commands associated with malicious behavior.

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "affected": [
    {
      "database_specific": {
        "source": "https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/wurl_show_data/MAL-2026-16466.json"
      },
      "package": {
        "ecosystem": "RubyGems",
        "name": "wurl_show_data",
        "purl": "pkg:gem/wurl_show_data"
      },
      "versions": [
        "3.1.42.99"
      ]
    }
  ],
  "credits": [
    {
      "contact": [
        "https://github.com/ossf/package-analysis",
        "https://openssf.slack.com/channels/package_analysis"
      ],
      "name": "OpenSSF: Package Analysis",
      "type": "FINDER"
    }
  ],
  "database_specific": {
    "malicious-packages-origins": [
      {
        "import_time": "2026-09-23T05:18:31.781031949Z",
        "modified_time": "2026-09-22T21:35:48Z",
        "sha256": "17d2e80b42383fadbe9bde12ef17decad8b9dfa9b48f93b6e7f9162091e2a69d",
        "source": "ossf-package-analysis",
        "versions": [
          "3.1.42.99"
        ]
      }
    ]
  },
  "details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (17d2e80b42383fadbe9bde12ef17decad8b9dfa9b48f93b6e7f9162091e2a69d)\nThe OpenSSF Package Analysis project identified 'wurl_show_data' @ 3.1.42.99 (rubygems) as malicious.\n\nIt is considered malicious because:\n\n- The package executes one or more commands associated with malicious behavior.\n",
  "id": "MAL-2026-16466",
  "modified": "2026-09-23T05:30:07.593396391Z",
  "published": "2026-09-22T21:35:48Z",
  "schema_version": "1.9.0",
  "summary": "Malicious code in wurl_show_data (RubyGems)"
}
View JSON API Download JSON