Security researcher Doyeon Park has publicly disclosed a zero-day vulnerability in Cosmos's consensus layer, CometBFT, which could lead to node stalling during block synchronization. The vulnerability has been rated with a CVSS score of 7.1, indicating high severity, although it does not allow for direct asset theft. The Cosmos ecosystem secures assets worth over $8 billion.
Park adhered to the Coordinated Vulnerability Disclosure process to protect the ecosystem but opted for public disclosure after the vendor's lack of cooperation and decision-making issues. This disclosure aims to prompt necessary action to address the vulnerability.
High-Severity 0-Day Vulnerability Disclosed in Cosmos CometBFT
Disclaimer: The content provided on Phemex News is for informational purposes only. We do not guarantee the quality, accuracy, or completeness of the information sourced from third-party articles. The content on this page does not constitute financial or investment advice. We strongly encourage you to conduct you own research and consult with a qualified financial advisor before making any investment decisions.
