MAL-2026-6118

    Dashboard / Malicious Package / MAL-2026-6118

    MAL-2026-6118

    Published: 18 Jun 2026Last Modified: 23 Jul 2026Aliases: 
    GHSA-c28g-mxf8-h57f

    Summary: Malicious code in final-poc-usa (RubyGems)

    Details: Source: ossf-package-analysis (6cc39e355e69ec11b0532da1e2b2a418601a4c5594b100ba6f054f0e52be44be) The OpenSSF Package Analysis project identified 'final-poc-usa' @ 0.99800.0 (rubygems) as malicious. It is considered malicious because: - The package communicates with a domain associated with malicious activity.

    References:

    Affected packages

    Package

    Name: final-poc-usa

    Purl: pkg:gem/final-poc-usa

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    0.99800.0
    MAL-2026-6118 | CVE-DB