menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Ripple News

>

XRP Ledger...
source image

Crypto-News-Flash

1M

read

262

img
dot

Image Credit: Crypto-News-Flash

XRP Ledger Foundation Flags JavaScript Security Risk—Update Required

  • The XRP Ledger Foundation has issued a security warning regarding a critical vulnerability in its official JavaScript library, xrpl.js.
  • The affected versions (v4.2.1-v4.2.4 and v2.14.2) contained a backdoor function named checkValidityOfSeed, which could steal private keys by sending them to an unauthorized domain.
  • The vulnerability was caused by a supply chain attack and the compromised versions were published by an individual using the NPM account 'mukulljangid'.
  • Developers and projects utilizing the vulnerable versions are advised to update to the patched version (v4.2.5) or downgrade to the unaffected version (v2.14.3) to prevent unauthorized access and loss of funds.

Read Full Article

like

15 Likes

For uninterrupted reading, download the app