Eric Meadows-Jönsson
4 exploits
Active since Feb 2026
Lockfile checksums not verified in Hex allows dependency integrity bypass
CVSS 5.9
hexpm hexpm/hexpm - DoS
CVSS 6.5
hexpm hexpm/hexpm - Privilege Escalation
CVSS 5.3
hex_core <0.1.0 - Deserialization
CVSS 7.5