req
Ecosystem:
hex
hex
Package URL:
pkg:hex/req
Total PRs:
199 Dependabot PRs
199 Dependabot PRs
Latest PR:
16 days ago
16 days ago
Unique Repositories:
86 repositories
86 repositories
Unique Repos (30 days):
4 repositories
4 repositories
Security Advisories
Decompression bomb DoS in Req via auto-decoded archive and compressed response bodies
EEF-CVE-2026-49755
GHSA-655f-mp8p-96gv
CVE-2026-49755
HIGH
published 3 days ago
• updated 1 day ago
## Summary
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in wojtekmach Req allows attacker-controlled HTTP server...
Multipart form-data header injection in Req via unescaped name/filename/content_type
EEF-CVE-2026-49756
GHSA-px9f-whj3-246m
CVE-2026-49756
LOW
published 3 days ago
• updated 1 day ago
## Summary
Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter smuggling via a...
Recent PRs (filtered by: Minor PRs )
deps(deps): bump the minor-and-patch group across 1 directory with 6 updates
0.4.14 → 0.5.15
Minor PR
Open
7 months ago
1 comment
deps(deps): bump the minor-and-patch group across 1 directory with 6 updates
0.4.14 → 0.5.15
Minor PR
Open
8 months ago
1 comment
deps(deps): bump the minor-and-patch group across 1 directory with 5 updates
0.4.14 → 0.5.15
Minor PR
Open
10 months ago
1 comment
deps(deps): bump the minor-and-patch group across 1 directory with 4 updates
0.4.14 → 0.5.15
Minor PR
Closed
10 months ago
2 comments
Package Details
| Name: | req |
| Ecosystem: | hex |
| PURL Type: | hex |
| Package URL: | pkg:hex/req |
| JSON API: | View JSON |
Security Advisories
Package Information
Description:
Req is a batteries-included HTTP client for Elixir.
| Repository: | https://github.com/wojtekmach/req |
| Homepage: | https://hexdocs.pm/req/changelog.html |
| Latest Release: |
0.5.10
about 1 year ago |
| Dependent Repos: | 78 |
| Dependent Packages: | 135 |
| Downloads: | 6,552,430 |
| Ranking: | Top 1.8218% by dependent repos Top 3.1062% by downloads Top 0.2949% by dependent pkgs |