Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
Hex/ash — 4 CVEs · VulnScope
pkg:Hex/
ash
4 total CVEs
HIGH
1
MEDIUM
1
✅ Check your installed version
Check
All known vulnerabilities
HIGH
8.1
CVE-2025-48044
Ash has authorization bypass when bypass policy condition evaluates to true
>= 3.6.3, < 3.7.1
MEDIUM
5.6
CVE-2025-48042
Before action, Ash's hooks may execute in certain scenarios despite a request being forbidden
from 0, < 3.5.39
—
CVE-2026-34593
Ash.Type.Module.cast_input/2 atom exhaustion via unchecked Module.concat allows BEAM VM crash
from 0, < 3.22.0
—
Ash Framework: Filter authorization misapplies impossible bypass/runtime policies
from 0, < 3.6.2
CVE-2025-48043