PT-2026-30508 · Zcash · Zcashd

Published

2026-04-05

·

Updated

2026-04-05

·

CVE-2026-35679

CVSS v3.1

3.5

Low

AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
Zcash zcashd before 6.12.0 allows invalid transactions to be accepted under certain conditions, which potentially could have resulted in the draining of user funds from the Sprout pool. It was sometimes not verifying Sprout proofs.

Fix

Improperly Implemented Security Check for Standard

Weakness Enumeration

Related Identifiers

CVE-2026-35679

Affected Products

Zcashd