Jonatan Männchen
9 exploits
Active since Oct 2021
Lockfile checksums not verified in Hex allows dependency integrity bypass
hexpm hexpm/hexpm - Privilege Escalation
CVSS 5.3
hexpm hexpm/hexpm - Auth Bypass
CVSS 9.8
hex_core <0.1.0 - Deserialization
CVSS 7.5
hexpm hexpm/hexpm - Path Traversal
CVSS 7.5
Hygeia - CSV Injection
CVSS 9.1
HEX Oidcc < 3.0.2 - Denial of Service
CVSS 5.3
HEX Ash < 3.6.2 - Incorrect Authorization
hexpm <c69243868 - XSS
CVSS 6.1