Security NewsHighIncidentvulnerability
CVE-2026-32148 Lockfile checksums not verified in Hex allows dependency integrity bypass
UnknownMay 3, 2026(about 3 hours ago)
A vulnerability (CVE-2026-32148) exists in Hex where lockfile checksums are not verified, allowing dependency integrity bypass.
Information published.
Related CVEs