Description
SLPJS (npm package slpjs) before version 0.27.2, has a vulnerability where users could experience false-negative validation outcomes for MINT transaction operations. A poorly implemented SLP wallet could allow spending of the affected tokens which would result in the destruction of a user's minting baton. This is fixed in version 0.27.2.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0427 | SLPJS (npm package slpjs) before version 0.27.2, has a vulnerability where users could experience false-negative validation outcomes for MINT transaction operations. A poorly implemented SLP wallet could allow spending of the affected tokens which would result in the destruction of a user's minting baton. This is fixed in version 0.27.2. |
Github GHSA |
GHSA-jc83-cpf9-q7c6 | False-negative validation results in MINT transactions with invalid baton |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-04T11:21:14.616Z
Reserved: 2020-03-30T00:00:00.000Z
Link: CVE-2020-11071
No data.
Status : Modified
Published: 2020-05-12T01:15:11.150
Modified: 2024-11-21T04:56:43.487
Link: CVE-2020-11071
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA