Deep Tide TechFlow News: On April 21, security researcher Doyeon Park posted on the X platform, saying that they discovered and disclosed a CVSS 7.1 high-severity 0-day vulnerability in the Cosmos consensus layer (CometBFT). The vulnerability may cause network nodes to stall during the block synchronization phase, impacting system operation, but it cannot directly result in asset theft. Doyeon Park said they made every effort to follow the “Coordination Vulnerability Disclosure” (CVD) process; however, due to the project team’s lack of cooperation and the making of “irresponsible decisions,” they ultimately chose to publicly disclose the vulnerability details, and stated that the security risks arising from this will be borne by the relevant project team.

ATOM1,33%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin