Hex
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 9 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 4, 2019 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Lockfile checksums not verified in Hex allows dependency integrity bypass
Denial of Service via Oversized Package Upload
Password Reset Tokens Do Not Expire
Improper Scope Enforcement in OAuth client_credentials Flow Allows Read-Only API Key to Escalate to Full Access
Unsafe Deserialization of Erlang Terms in hex_core
Path Traversal in Local File Store Backend
Cross-site scripting (XSS) in OAuth Device Authorization screen
Monitor Hex in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.