VYPR
Vendor

Elixir Lang

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2020-29575CriDec 8, 2020
    risk 0.64cvss 9.8epss 0.03

    The official elixir Docker images before 1.8.0-alpine (Alpine specific) contain a blank password for a root user. Systems using the elixir Linux Docker container deployed by affected versions of the Docker image may allow a remote attacker to achieve root access with a blank…

  • CVE-2026-49762MedJun 9, 2026
    risk 0.26cvss epss 0.00

    Uncontrolled Resource Consumption vulnerability in the Elixir standard library's Version module allows an attacker who controls a version string to cause a denial of service through CPU and memory exhaustion. The version parser converts numeric version components (major, minor,…

  • CVE-2012-2146Aug 26, 2012
    risk 0.00cvss epss 0.02

    Elixir 0.8.0 uses Blowfish in CFB mode without constructing a unique initialization vector (IV), which makes it easier for context-dependent users to obtain sensitive information and decrypt the database.