sonatype-2020-1222 | Security Details | Sonatype Guide

sonatype-2020-1222

ruby-bitcoin, pretty_color - Embedded Malicious Code (Cryptocurrency stealing malware)

Published Dec 14, 2020

blog.sonatype.com rubygems/rubygems.org

sonatype-2020-1222 Security Details

CVE ID sonatype-2020-1222
CWE N/A
CVE Description ruby-bitcoin, pretty_color - Embedded Malicious Code (Cryptocurrency stealing malware)
Published Dec 14, 2020
CVSS Score & Severity 10.0 Critical
CVSS Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score 0%
Malware malware
KEV Status Not in KEV Catalog: No known exploits
Affected Ecosystems affected
Source Sonatype

References

blog.sonatype.com THIRD_PARTY
GitHub · rubygems/rubygems.org THIRD_PARTY