ash_authentication_phoenix
Hex2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting ash_authentication_phoenixpage 1 of 1
- CVE-2025-4754LOWCVSS 2.3EG 2.3✓ Fixed in 2.10.02025-06-17
vulnerable: 1.0.0 ... 2.9.0 (83 versions)
Insufficient Session Expiration vulnerability in ash-project ash_authentication_phoenix allows Session Hijacking. This vulnerability is associated with program files lib/ash_authentication_phoenix/controller.ex. This issue affects ash_aut…
- CVE-2026-81632HIGHCVSS 7.2EG 7.2✓ Fixed in 3.0.0-rc.112026-09-17
vulnerable: 1.7.0 ... 3.0.0-rc.9 (89 versions)
Use of HTTP Request With Sensitive Query String vulnerability in team-alembic AshAuthenticationPhoenix allows someone able to read access logs, proxy logs or browser history to recover a single-use sign-in token and authenticate as its own…
Check whether ash_authentication_phoenix is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for ash_authentication_phoenix CVEs against the assets you own.
Start Free Scan →