Known Vulnerabilities for Elixir by Elixir-lang
Listed below are 10 of the newest known vulnerabilities associated with "Elixir" by "Elixir-lang".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-66838 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in elixir-ecto postgrex al... | Not Provided | 2026-08-07 | 2026-08-07 |
| CVE-2026-66298 json | Origin Validation Error vulnerability in livebook-dev livebook allows untrusted notebook output JavaScript to trigger session... | Not Provided | 2026-08-05 | 2026-08-06 |
| CVE-2026-65636 json | Improper Neutralization of CRLF Sequences vulnerability in ufirstgroup ymlr (Elixir.Ymlr module) allows attackers to inject a... | Not Provided | 2026-07-31 | 2026-08-01 |
| CVE-2026-65635 json | Improper Isolation or Compartmentalization vulnerability in malach-it boruta (Elixir.Boruta.Openid module) allows attackers t... | Not Provided | 2026-07-30 | 2026-07-30 |
| CVE-2026-65623 json | Inefficient Algorithmic Complexity vulnerability in mtrudel bandit allows unauthenticated remote denial of service via CPU ex... | Not Provided | 2026-07-24 | 2026-07-25 |
| CVE-2026-59695 json | Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to drain the fee-pa... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-59694 json | Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to inflate the fee-... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-59252 json | Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to drain the fee-pa... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-59249 json | Inconsistent interpretation of HTTP requests (HTTP response smuggling) vulnerability in elixir-mint mint allows a malicious H... | Not Provided | 2026-07-16 | 2026-07-16 |
| CVE-2026-59248 json | Allocation of resources without limits vulnerability in ninenines cowlib allows an unauthenticated remote HTTP/2 or HTTP/3 pe... | Not Provided | 2026-07-28 | 2026-07-29 |