sonatype-2020-1222 | Security Details | Sonatype Guide
sonatype-2020-1222
ruby-bitcoin, pretty_color - Embedded Malicious Code (Cryptocurrency stealing malware)
Published Dec 14, 2020
blog.sonatype.com rubygems/rubygems.org
sonatype-2020-1222 Security Details
CVE ID sonatype-2020-1222
CWE N/A
CVE Description ruby-bitcoin, pretty_color - Embedded Malicious Code (Cryptocurrency stealing malware)
Published Dec 14, 2020
CVSS Score & Severity 10.0 Critical
CVSS Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score 0%
Malware malware
KEV Status Not in KEV Catalog: No known exploits
Affected Ecosystems affected
Source Sonatype
References
blog.sonatype.com THIRD_PARTY
GitHub · rubygems/rubygems.org THIRD_PARTY