CVE-2026-21619 | hexpm hex_core 3_hex_api src/hex_api.erl resource consumption (GHSA-hx9w-f2w9-9g96)
A vulnerability described as problematic has been identified in hexpm hex_core. Affected by this issue is some unknown functionality of the file src/hex_api.erl of the component 3_hex_api Module. Such manipulation leads to resource consumption.
This vulnerability is documented as CVE-2026-21619. The attack can be executed remotely. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.