PT-2026-42669 · Git+2 · Core-Rs-Albatross+1

CVE-2026-46539

·

Published

2026-05-21

·

Updated

2026-06-10

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Nimiq versions prior to 1.4.0
Description A logic flaw in the is block proven() function within BlockInclusionProof allows the function to return true without performing cryptographic verification when get interlink hops returns an empty hop list. This happens when the target block is at the election block position immediately preceding the election head's epoch. Consequently, an attacker providing transaction inclusion proofs can forge a MacroBlock header for that epoch position and have it accepted as proven without any hash or signature verification.
Recommendations Update to version 1.4.0.

Exploit

Fix

Insufficient Verification of Data Authenticity

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-46539
GHSA-799F-29JM-GR6C

Affected Products

Core-Rs-Albatross
Nimiq-Primitives