Threats Tagged 'ghsa-ww9q-8r59-xv46'
View all threats tagged with 'ghsa-ww9q-8r59-xv46'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'ghsa-ww9q-8r59-xv46'
Click on any threat for detailed analysis and mitigation recommendations
A soundness vulnerability in the variable-base scalar multiplication gadget of halo2_gadgets in the Zebrad product allowed a malicious prover to bypass the diversified-address-integrity check in Orchard Actions. This flaw enabled an adversary to produce valid proofs with an under-constrained base point, effectively allowing double-spends within the Orchard pool or theft of funds by forging spend authorizations. Exploitation is undetectable on-chain and could result in balance violations within the Orchard pool without inflating the overall ZEC supply. The vulnerability existed since the Orchard pool introduction in May 2022 and has been remediated. No evidence of exploitation prior to the fix is known. Join the discussion | GCVE Database | 07/06/2026, 21:23:41 UTC Added: 07/06/2026, 23:02:23 UTC |
Showing 1 to 1 of 1 result