Current section

5 Advisories

Jump to
EEF-CVE-2026-65633 CVE-2026-65633 GHSA-6vcj-3h59-rrc3

Purpose-limited JWT accepted as full bearer authentication in AshAuthentication

August 25, 2026
EEF-CVE-2026-66882 CVE-2026-66882 GHSA-54fc-x3hv-ffhw

Reflected XSS in AshAuthentication confirmation and magic link interaction forms

August 25, 2026
GHSA-3988-q8q7-p787 CVE-2025-32782

ash_authentication has email link auto-click account confirmation vulnerability

April 14, 2025
GHSA-qrm9-f75w-hg4c CVE-2025-25202

Ash Authentication has flawed token revocation checking logic in actions generated by `mix ash_authentication.install`

February 11, 2025

Checksum

Dependency Config

mix.exs

rebar.config

Gleam

erlang.mk

Package Details

Downloads Last 30 days, all versions
0 1K 2K 3K 4K

this version

20 504

yesterday

2 910

last 7 days

17 826

all time

882 184

Last Updated

Aug 25, 2026

License

MIT

Build Tools

mix

Publisher

jamesotron jamesotron