hammer is vulnerable to Race Condition
25
Low Risk
Affected versions of this package are affected by a race condition when creating a key in Atomic backends, as it relies on ets.insert instead of ets.insert_new. This flaw allows multiple processes to insert the same key simultaneously, leading to data inconsistencies. An attacker could exploit this by sending concurrent requests to create the same key, resulting in overwritten entries, data corruption, or denial of service.
You are affected if you are using a version that falls within the vulnerable range.
hammer is vulnerable to Race Condition in versions 7.0.0 - 7.0.0.
Upgrade the hammer library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant