CVE-2024-39696
- EPSS 0.44%
- Veröffentlicht 05.07.2024 19:15:10
- Zuletzt bearbeitet 07.03.2025 14:55:48
Evmos is a decentralized Ethereum Virtual Machine chain on the Cosmos Network. Prior to version 19.0.0, a user can create a vesting account with a 3rd party account (EOA or contract) as funder. Then, this user can create an authorization for the cont...
CVE-2024-37158
- EPSS 0.09%
- Veröffentlicht 17.06.2024 14:15:10
- Zuletzt bearbeitet 07.03.2025 14:55:48
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. Preliminary checks on actions computed by the clawback vesting accounts are performed in the ante handler. Evmos core, implements two different ante handlers: one for Cosmos trans...
CVE-2024-37159
- EPSS 0.1%
- Veröffentlicht 17.06.2024 14:15:10
- Zuletzt bearbeitet 07.03.2025 14:55:48
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. This vulnerability allowed a user to create a validator using vested tokens to deposit the self-bond. This vulnerability is fixed in 18.0.0.
CVE-2024-37153
- EPSS 0.49%
- Veröffentlicht 06.06.2024 19:15:58
- Zuletzt bearbeitet 21.11.2024 09:23:18
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. There is an issue with how to liquid stake using Safe which itself is a contract. The bug only appears when there is a local state change together with an ICS20 transfer in the sa...
CVE-2024-37154
- EPSS 0.26%
- Veröffentlicht 06.06.2024 19:15:58
- Zuletzt bearbeitet 21.11.2024 09:23:19
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. Users are able to delegate tokens that have not yet been vested. This affects employees and grantees who have funds managed via `ClawbackVestingAccount`. This affects 18.1.0 and e...
CVE-2024-32873
- EPSS 0.17%
- Veröffentlicht 06.06.2024 19:15:56
- Zuletzt bearbeitet 21.11.2024 09:15:54
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. The spendable balance is not updated properly when delegating vested tokens. The issue allows a clawback vesting account to anticipate the release of unvested tokens. This vulner...
CVE-2024-32644
- EPSS 0.62%
- Veröffentlicht 19.04.2024 15:15:50
- Zuletzt bearbeitet 06.03.2025 15:00:11
Evmos is a scalable, high-throughput Proof-of-Stake EVM blockchain that is fully compatible and interoperable with Ethereum. Prior to 17.0.0, there is a way to mint arbitrary tokens due to the possibility to have two different states not in sync duri...
CVE-2022-35936
- EPSS 0.15%
- Veröffentlicht 05.08.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:12:00
Ethermint is an Ethereum library. In Ethermint running versions before `v0.17.2`, the contract `selfdestruct` invocation permanently removes the corresponding bytecode from the internal database storage. However, due to a bug in the `DeleteAccount`fu...
CVE-2022-24738
- EPSS 0.27%
- Veröffentlicht 07.03.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:50:59
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. In versions of evmos prior to 2.0.1 attackers are able to drain unclaimed funds from user addresses. To do this an attacker must create a new chain which does not enforce signatur...