The XRPL JavaScript library (v4.2.1-4.2.4, v2.14.2) had a vulnerability potentially stealing private keys. Update to v4.2.5 immediately.
The XRP Ledger Foundation has recently discovered a security vulnerability in the JavaScript library (v4.2.1–4.2.4 and v2.14.2) used to interact with the ledger that could steal crypto private keys.
The foundation has urged affected projects to update to the latest version and address this potentially catastrophic supply chain risk.
Despite the vulnerability, the XRP Ledger has processed over 2.8 billion secure transactions and has seen growing institutional adoption.