Vulnerabilidades em ZcashFoundation
13 resultadosAnálise Vexday
A Zcash Foundation apresenta 13 vulnerabilidades catalogadas, com 8 publicadas nos últimos 90 dias, indicando atividade recente de descoberta. Nenhuma vulnerabilidade está sob exploração ativa conforme CISA KEV, mas 6 são críticas (CVSS alto), predominantemente relacionadas a CWE-770 (alocação de recursos sem limite). O risco atual é moderado, concentrado em gestão deficiente de recursos que pode levar a negação de serviço ou consumo excessivo.
CVE-2026-34202CRITICALZebra node crash — V5 transaction hash panic (P2P reachable)EPSS 0.7%CVE-2026-44500MEDIUMZEBRA: Allocation Amplification in Inbound Network DeserializersEPSS 0.4%CVE-2026-44499HIGHZEBRA: Permanent Block Discovery Halt via Gossip Queue Saturation and Syncer PoisoningEPSS 0.4%CVE-2025-58359MEDIUMfrost-core: refresh shares with smaller min_signers will reduce group securityEPSS 0.3%CVE-2026-44498CRITICALZEBRA: Block Validator Undercounts Coinbase and P2SH SigopsEPSS 0.3%CVE-2026-41583CRITICALZEBRA: Consensus Divergence in Transparent Sighash Hash-Type HandlingEPSS 0.3%CVE-2026-41584CRITICALZEBRA: rk Identity Point Panic in Transaction VerificationEPSS 0.3%CVE-2026-40881MEDIUMZebra: addr/addrv2 Deserialization Resource ExhaustionEPSS 0.3%CVE-2026-40880HIGHZebra: Cached Mempool Verification Bypasses Consensus Rules for Ahead-of-Tip BlocksEPSS 0.3%CVE-2026-41585MEDIUMZEBRA: Denial of Service via Interrupted JSON-RPC Requests from Authenticated ClientsEPSS 0.3%CVE-2026-34377HIGHZebra has a Consensus Failure due to Improper Verification of V5 TransactionsEPSS 0.3%CVE-2026-54496CRITICALMissing copy constraint in halo2_gadgets variable-base scalar multiplication allows under-constrained base, breaking Orchard Action circuit soundnessEPSS 0.2%CVE-2026-44497CRITICALZEBRA: Consensus Divergence in Transparent Sighash Hash-Type Handling due to Stale BufferEPSS 0.2%