{"schema_version":1,"title":"Elixir-Mint vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 11 vulnerabilities in Elixir-Mint: 1 in the last 7 days and 7 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-82672, was published on 19 September 2026. 1 technology has a page of its own.","url":"https://junglewise.ai/threats/vendors/elixir-mint","json_url":"https://junglewise.ai/threats/vendors/elixir-mint.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/elixir-mint","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":2,"all_time":11,"critical":0,"exploited":0,"last_7_days":1,"last_30_days":3,"last_90_days":7,"last_365_days":11},"latest":[{"cve":"CVE-2026-82672","epss":0.0052,"slug":"cve-2026-82672-inconsistent-interpretation-of-http-requests-http-request","title":"Elixir Mint HTTP request smuggling in chunked transfer encoding","severity":"info","exploited":false,"published_at":"2026-09-19T17:16:35.71+00:00","url":"https://junglewise.ai/threats/cve-2026-82672-inconsistent-interpretation-of-http-requests-http-request"},{"cve":"CVE-2026-82729","epss":0.0052,"slug":"cve-2026-82729-elixir-mint-http-1-parser-algorithmic-complexity-denial-of","title":"elixir-mint HTTP/1 parser algorithmic complexity denial of service","severity":"info","exploited":false,"published_at":"2026-09-04T15:17:36.12+00:00","url":"https://junglewise.ai/threats/cve-2026-82729-elixir-mint-http-1-parser-algorithmic-complexity-denial-of"},{"cve":"CVE-2026-82728","cvss":7.5,"epss":0.0052,"slug":"cve-2026-82728-elixir-mint-http-1-parser-denial-of-service-via-unbounded-buffer","title":"Elixir Mint HTTP/1 parser denial of service via unbounded buffer","severity":"info","exploited":false,"published_at":"2026-09-04T15:17:35.943+00:00","url":"https://junglewise.ai/threats/cve-2026-82728-elixir-mint-http-1-parser-denial-of-service-via-unbounded-buffer"},{"cve":"CVE-2026-59249","cvss":6.3,"slug":"cve-2026-59249-elixir-mint-http-response-smuggling-in-http-1-chunk-size-parsing","title":"Elixir Mint HTTP response smuggling in HTTP/1 chunk-size parsing","severity":"info","exploited":false,"published_at":"2026-07-16T12:18:07.17+00:00","url":"https://junglewise.ai/threats/cve-2026-59249-elixir-mint-http-response-smuggling-in-http-1-chunk-size-parsing"},{"cve":"CVE-2026-59246","cvss":6.3,"slug":"cve-2026-59246-elixir-mint-denial-of-service-via-http-2-continuation-flood","title":"Elixir Mint denial of service via HTTP/2 CONTINUATION flood","severity":"info","exploited":false,"published_at":"2026-07-14T09:16:41.727+00:00","url":"https://junglewise.ai/threats/cve-2026-59246-elixir-mint-denial-of-service-via-http-2-continuation-flood"},{"cve":"CVE-2026-58229","cvss":8.2,"slug":"cve-2026-58229-elixir-mint-denial-of-service-via-unbounded-http-header","title":"Elixir Mint denial of service via unbounded HTTP header accumulation","severity":"info","exploited":false,"published_at":"2026-07-14T09:16:41.313+00:00","url":"https://junglewise.ai/threats/cve-2026-58229-elixir-mint-denial-of-service-via-unbounded-http-header"},{"cve":"CVE-2026-56810","cvss":8.7,"slug":"cve-2026-56810-elixir-mint-denial-of-service-in-mint-http1-chunked-decoder","title":"Elixir Mint denial of service in Mint.HTTP1 chunked decoder","severity":"info","exploited":false,"published_at":"2026-07-06T11:16:30.983+00:00","url":"https://junglewise.ai/threats/cve-2026-56810-elixir-mint-denial-of-service-in-mint-http1-chunked-decoder"},{"cve":"CVE-2026-49754","cvss":8.2,"epss":0.0038,"slug":"cve-2026-49754-elixir-mint-memory-exhaustion-via-http-2-continuation-flood","title":"Elixir Mint memory exhaustion via HTTP/2 CONTINUATION flood","severity":"high","exploited":false,"published_at":"2026-06-02T16:16:44.93+00:00","url":"https://junglewise.ai/threats/cve-2026-49754-elixir-mint-memory-exhaustion-via-http-2-continuation-flood"},{"cve":"CVE-2026-49753","cvss":6.3,"epss":0.003,"slug":"cve-2026-49753-elixir-mint-http-response-smuggling-via-lenient-content-length","title":"Elixir Mint HTTP response smuggling via lenient Content-Length parsing","severity":"medium","exploited":false,"published_at":"2026-06-02T16:16:44.777+00:00","url":"https://junglewise.ai/threats/cve-2026-49753-elixir-mint-http-response-smuggling-via-lenient-content-length"},{"cve":"CVE-2026-48862","cvss":8.2,"epss":0.0038,"slug":"cve-2026-48862-elixir-mint-memory-exhaustion-via-http-2-push-promise-flooding","title":"Elixir Mint memory exhaustion via HTTP/2 PUSH_PROMISE flooding","severity":"high","exploited":false,"published_at":"2026-06-02T16:16:44.627+00:00","url":"https://junglewise.ai/threats/cve-2026-48862-elixir-mint-memory-exhaustion-via-http-2-push-promise-flooding"},{"cve":"CVE-2026-48861","cvss":2.1,"epss":0.0017,"slug":"cve-2026-48861-elixir-mint-crlf-injection-in-http-1-request-line","title":"Elixir Mint CRLF injection in HTTP/1 request line","severity":"low","exploited":false,"published_at":"2026-06-02T16:16:44.47+00:00","url":"https://junglewise.ai/threats/cve-2026-48861-elixir-mint-crlf-injection-in-http-1-request-line"}],"vendor":{"hub":true,"name":"Elixir-Mint","slug":"elixir-mint","homepage":"https://github.com/elixir-mint","description":"An Elixir ecosystem project focused on providing a low-level HTTP client.","url":"https://junglewise.ai/threats/vendors/elixir-mint"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":3},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2026-49754","cvss":8.2,"epss":0.0038,"slug":"cve-2026-49754-elixir-mint-memory-exhaustion-via-http-2-continuation-flood","title":"Elixir Mint memory exhaustion via HTTP/2 CONTINUATION flood","severity":"high","exploited":false,"published_at":"2026-06-02T16:16:44.93+00:00","url":"https://junglewise.ai/threats/cve-2026-49754-elixir-mint-memory-exhaustion-via-http-2-continuation-flood"},{"cve":"CVE-2026-48862","cvss":8.2,"epss":0.0038,"slug":"cve-2026-48862-elixir-mint-memory-exhaustion-via-http-2-push-promise-flooding","title":"Elixir Mint memory exhaustion via HTTP/2 PUSH_PROMISE flooding","severity":"high","exploited":false,"published_at":"2026-06-02T16:16:44.627+00:00","url":"https://junglewise.ai/threats/cve-2026-48862-elixir-mint-memory-exhaustion-via-http-2-push-promise-flooding"},{"cve":"CVE-2026-49753","cvss":6.3,"epss":0.003,"slug":"cve-2026-49753-elixir-mint-http-response-smuggling-via-lenient-content-length","title":"Elixir Mint HTTP response smuggling via lenient Content-Length parsing","severity":"medium","exploited":false,"published_at":"2026-06-02T16:16:44.777+00:00","url":"https://junglewise.ai/threats/cve-2026-49753-elixir-mint-http-response-smuggling-via-lenient-content-length"},{"cve":"CVE-2026-48861","cvss":2.1,"epss":0.0017,"slug":"cve-2026-48861-elixir-mint-crlf-injection-in-http-1-request-line","title":"Elixir Mint CRLF injection in HTTP/1 request line","severity":"low","exploited":false,"published_at":"2026-06-02T16:16:44.47+00:00","url":"https://junglewise.ai/threats/cve-2026-48861-elixir-mint-crlf-injection-in-http-1-request-line"},{"cve":"CVE-2026-56810","cvss":8.7,"slug":"cve-2026-56810-elixir-mint-denial-of-service-in-mint-http1-chunked-decoder","title":"Elixir Mint denial of service in Mint.HTTP1 chunked decoder","severity":"info","exploited":false,"published_at":"2026-07-06T11:16:30.983+00:00","url":"https://junglewise.ai/threats/cve-2026-56810-elixir-mint-denial-of-service-in-mint-http1-chunked-decoder"},{"cve":"CVE-2026-58229","cvss":8.2,"slug":"cve-2026-58229-elixir-mint-denial-of-service-via-unbounded-http-header","title":"Elixir Mint denial of service via unbounded HTTP header accumulation","severity":"info","exploited":false,"published_at":"2026-07-14T09:16:41.313+00:00","url":"https://junglewise.ai/threats/cve-2026-58229-elixir-mint-denial-of-service-via-unbounded-http-header"},{"cve":"CVE-2026-82728","cvss":7.5,"epss":0.0052,"slug":"cve-2026-82728-elixir-mint-http-1-parser-denial-of-service-via-unbounded-buffer","title":"Elixir Mint HTTP/1 parser denial of service via unbounded buffer","severity":"info","exploited":false,"published_at":"2026-09-04T15:17:35.943+00:00","url":"https://junglewise.ai/threats/cve-2026-82728-elixir-mint-http-1-parser-denial-of-service-via-unbounded-buffer"},{"cve":"CVE-2026-59249","cvss":6.3,"slug":"cve-2026-59249-elixir-mint-http-response-smuggling-in-http-1-chunk-size-parsing","title":"Elixir Mint HTTP response smuggling in HTTP/1 chunk-size parsing","severity":"info","exploited":false,"published_at":"2026-07-16T12:18:07.17+00:00","url":"https://junglewise.ai/threats/cve-2026-59249-elixir-mint-http-response-smuggling-in-http-1-chunk-size-parsing"},{"cve":"CVE-2026-59246","cvss":6.3,"slug":"cve-2026-59246-elixir-mint-denial-of-service-via-http-2-continuation-flood","title":"Elixir Mint denial of service via HTTP/2 CONTINUATION flood","severity":"info","exploited":false,"published_at":"2026-07-14T09:16:41.727+00:00","url":"https://junglewise.ai/threats/cve-2026-59246-elixir-mint-denial-of-service-via-http-2-continuation-flood"},{"cve":"CVE-2026-82672","epss":0.0052,"slug":"cve-2026-82672-inconsistent-interpretation-of-http-requests-http-request","title":"Elixir Mint HTTP request smuggling in chunked transfer encoding","severity":"info","exploited":false,"published_at":"2026-09-19T17:16:35.71+00:00","url":"https://junglewise.ai/threats/cve-2026-82672-inconsistent-interpretation-of-http-requests-http-request"}],"generated_at":"2026-09-26T12:07:00.15149+00:00","technologies":[{"name":"Elixir-Mint Mint","slug":"mint","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/mint"}]}