Known Vulnerabilities for Hexpm by Hex
Listed below are 5 of the newest known vulnerabilities associated with "Hexpm" by "Hex".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-75554 json | Insufficient Session Expiration vulnerability in the OAuth token refresh grant in hexpm hexpm allows a user removed from an o... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-75542 json | Incorrect Authorization vulnerability in the OAuth token endpoint in hexpm hexpm allows an API key holding the repositories p... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-23940 json | Uncontrolled Resource Consumption vulnerability in hexpm hexpm/hexpm allows Excessive Allocation. Publishing an oversized pa... | Not Provided | 2026-03-13 | 2026-09-08 |
| CVE-2026-23939 json | Not Provided | 2026-02-26 | 2026-04-06 | |
| CVE-2026-21622 json | Not Provided | 2026-03-05 | 2026-04-06 | |
| CVE-2026-21621 json | Not Provided | 2026-03-05 | 2026-04-06 | |
| CVE-2026-21618 json | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in hexpm hexpm/hexp... | Not Provided | 2026-01-19 | 2026-07-24 |