VYPR
Vendor

Ash Project

Products
16
CVEs
83
Across products
83
Status
Private

Products

16

Recent CVEs

83
View all 83 CVEs →
  • CVE-2026-77956HigAug 31, 2026
    risk 0.51cvss —epss 0.00

    Improper Control of Generation of Code (Code Injection) vulnerability in ash-project ash_ai allows a remote, unauthenticated client to execute arbitrary Elixir code. AshAi.Actions.Prompt evaluates prompt content through EEx.eval_string/2. The documented prompt: fn input,…

  • CVE-2026-74837HigSep 1, 2026
    risk 0.50cvss —epss 0.01

    Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_typescript allows an unauthenticated attacker to exhaust the BEAM atom table and abort the node via client-supplied RPC field names. AshTypescript.FieldFormatter.convert_to_field_atom/2 in…

  • CVE-2026-81636HigAug 30, 2026
    risk 0.50cvss —epss 0.01

    Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_graphql allows an unauthenticated client to bypass the configured GraphQL query-complexity limit and force an unbounded database read. AshGraphql.Graphql.Resolver.query_complexity/3 multiplies…

  • CVE-2025-48044HigOct 17, 2025
    risk 0.49cvss —epss 0.01

    Incorrect Authorization vulnerability in ash-project ash allows Authentication Bypass. This issue affects ash: from 3.6.3 before 3.7.1.

  • CVE-2025-48043HigOct 10, 2025
    risk 0.49cvss —epss 0.00

    Incorrect Authorization vulnerability in ash-project ash allows Authentication Bypass. This issue affects ash: from 0.1.1 before 3.6.2.

  • CVE-2026-77850HigAug 31, 2026
    risk 0.48cvss —epss 0.00

    Stored Cross-site Scripting vulnerability in ash-project ash_admin executes attacker-supplied record content as script in an administrator's browser. The relationship typeahead components AshAdmin.Components.Resource.RelationshipField and AshAdmin.Components.Resource.ManagedRela…

  • CVE-2026-67579HigAug 12, 2026
    risk 0.48cvss 7.4epss 0.01

    Deserialization of Untrusted Data vulnerability in ash-project ash allows an unauthenticated attacker to inject a filter expression through a forged keyset pagination cursor, resulting in SQL injection or code execution depending on the data layer. Read actions with keyset…

  • CVE-2026-82722HigAug 31, 2026
    risk 0.47cvss —epss 0.00

    Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_admin lets any client that can reach the admin LiveView exhaust the BEAM atom table and crash the entire node. Two LiveView event handlers interned atoms from unvalidated client input:…

  • CVE-2026-82673HigAug 31, 2026
    risk 0.47cvss —epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) vulnerability in ash-project ash_admin allows writing attacker-controlled bytes to arbitrary paths on the server. AshAdmin.Components.Resource.Form.consume_file_uploads/1 builds the destination as…

  • CVE-2026-75757HigAug 31, 2026
    risk 0.47cvss —epss 0.01

    Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin's client JavaScript read its state…

  • CVE-2026-82753HigSep 7, 2026
    risk 0.46cvss —epss 0.01

    Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_authentication_oauth2_server allows an unauthenticated attacker to exhaust database storage and memory. The /authorize endpoint is unauthenticated by design. With Client ID Metadata Documents…

  • CVE-2026-82586HigSep 7, 2026
    risk 0.46cvss —epss 0.01

    Improper Protection of Alternate Path vulnerability in ash-project ash_lua allows a user-supplied Lua script to read attributes that are not on the exposed-field allow-list. AshLua exposes Ash resources to Lua scripts, gated by a manifest declaring which fields are exposed. The…

  • CVE-2026-82730HigSep 1, 2026
    risk 0.46cvss —epss 0.01

    Incorrect Authorization vulnerability in ash-project ash_typescript allows an unauthorized RPC caller to read attribute values that Ash field policies denied. When a field policy denies an attribute, Ash substitutes %Ash.ForbiddenField{}, which retains the real value in…

  • CVE-2026-77856HigSep 1, 2026
    risk 0.46cvss —epss 0.01

    Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_typescript allows an unauthenticated attacker to exhaust the BEAM atom table and abort the node via client-supplied typed struct field names. resolve_typed_struct_field/2 in…

  • CVE-2026-82724HigAug 31, 2026
    risk 0.42cvss —epss 0.00

    Incorrect Authorization vulnerability in ash-project ash_phoenix invokes the SubdomainHook authorization callback with a nil tenant, so tenant-scoped access checks never see the tenant they are meant to enforce. AshPhoenix.LiveView.SubdomainHook.on_mount/4 attached a…

  • CVE-2026-81315HigAug 31, 2026
    risk 0.41cvss —epss 0.00

    Origin Validation Error vulnerability in ash-project ash_ai allows a malicious web page to bypass the MCP server's DNS-rebinding protection and issue cross-site requests to a user's local MCP server with that user's actor. In AshAi.Mcp.Server, with the default allowed_origins:…

  • CVE-2026-78699HigAug 30, 2026
    risk 0.40cvss —epss 0.00

    Unchecked Return Value vulnerability in ash-project ash_postgres allows a user who can drive a tenant rename to a name that collides with an existing tenant's schema to have their tenant record repointed at that other tenant's live schema, gaining access to its data. …

  • CVE-2026-82564HigAug 31, 2026
    risk 0.39cvss —epss 0.01

    Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution, identity_filter/3 built the…

  • CVE-2026-75760HigAug 31, 2026
    risk 0.39cvss —epss 0.00

    Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset…

  • CVE-2026-80223HigAug 30, 2026
    risk 0.39cvss —epss 0.00

    Incorrect Authorization vulnerability in ash-project ash_graphql allows an authenticated subscriber in one tenant to receive another tenant's records over GraphQL subscriptions. The subscription resolver in AshGraphql.Graphql.Resolver authorizes each notification payload in…