hyperledger
OSS Librariesoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting hyperledger.
- CVE-2026-45581fabric-chaincode-java: TLS Private Key Password Disclosed in INFO Startup Logs in Chaincode-as-a-Service Mode5.5
- CVE-2026-41586ObjectInputStream.readObject() without ObjectInputFilter in fabric-sdk-java allows Java deserialization RCE9.8
- CVE-2024-45244Hyperledger Fabric through 3.0.0 and 2.5.x through 2.5.9 do not verify that a request has a timestamp within the expected time window.5.3
- CVE-2024-22192Ursa CL-Signatures Revocation allows verifiers to generate unique identifiers for holders6.5
- CVE-2024-21670CL-Signatures Revocation Scheme in Ursa has flaws that allow a holder to demonstrate non-revocation of a revoked credential6.5
- CVE-2022-31021Unlinkability broken in ursa when verifiers use malicious keys3.3
- CVE-2024-21669Hyperledger Aries Cloud Agent Python result of presentation verification not checked for LDP-VC9.9
- CVE-2023-46132Crosslinking transaction attack in hyperledger/fabric7.1
- CVE-2022-45196Hyperledger Fabric 2.3 allows attackers to cause a denial of service (orderer crash) by repeatedly sending a crafted channel tx with the same Channel name. NOTE: the official Fabric with Raft preve...7.5
- CVE-2022-36025Incorrect Conversion between Numeric Types in Besu Ethereum Client9.1
- CVE-2022-31006Hyperledger Indy DOS vulnerability7.5
- CVE-2022-31020Remote code execution in Indy's NODE_UPGRADE transaction8.8
- CVE-2022-36023Remote denial of service in Hyperledger Fabric Gateway7.0
- CVE-2022-31121Improper Input Validation in fabric hyperledger7.5
- CVE-2021-41272SHL, SHR, and SAR operations trigger native exception at key values in besu7.5