ZeroHour

CVE-2023-33252

CVSS 3.1
7.5 high
EPSS
<1%p46
Published
()
Modified
Description

iden3 snarkjs through 0.6.11 allows double spending because there is no validation that the publicSignals length is less than the field modulus.

Vendors
0kims
Products
snarkjs
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.