hex.pm OAuth Token Exchange Privilege Escalation to Read Private Packages (CVE-2026-75542)
Security Advisory
CVE-2026-75542
High
hexpm
Affected:
- hexpm/hexpm
Fixed in:
- bfb0fb4d20810acfab7fa27467c1829cbdd65590ccbe1b4e43
- 8231659e322a8
- a2b8cd3d654b
Referenced CVEs:
CVE-2026-75542 · 8.3
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.