Skip to content
Noroxi

hyperledger records

11 published records for vendor hyperledger.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
45.5%
Median publish → KEV
No record has entered KEV

All records

11 records
  • ObjectInputStream.readObject() without ObjectInputFilter in fabric-sdk-java allows Java deserialization RCE

    CriticalCVSS 9.3No exploitEPSS 1%

    hyperledger · fabricMay 7, 2026

  • Hyperledger Aries Cloud Agent Python result of presentation verification not checked for LDP-VC

    HighCVSS 8.8No exploitEPSS 1%

    hyperledger · aries cloud agentJan 11, 2024

  • CL-Signatures Revocation Scheme in Ursa has flaws that allow a holder to demonstrate non-revocation of a revoked credential

    HighCVSS 8.1No exploitEPSS 0%

    hyperledger · ursaJan 16, 2024

  • Improper Input Validation in fabric hyperledger

    HighCVSS 7.5No exploitEPSS 2%

    hyperledger · fabricJul 7, 2022

  • Hyperledger Fabric 2.3 allows attackers to cause a denial of service (orderer crash) by repeatedly sending a crafted channel tx with the sam

    HighCVSS 7.5No exploitEPSS 1%

    hyperledger · fabricNov 12, 2022

  • CVE-2018-3756
    30Monitor

    Hyperledger Iroha versions v1.0_beta and v1.0.0_beta-1 are vulnerable to transaction and block signature verification bypass in the transact

    HighCVSS 7.5No exploitEPSS 1%

    hyperledger · irohaJun 1, 2018

  • Crosslinking transaction attack in hyperledger/fabric

    MediumCVSS 6.5No exploitEPSS 1%

    hyperledger · fabricNov 14, 2023

  • Ursa CL-Signatures Revocation allows verifiers to generate unique identifiers for holders

    MediumCVSS 6.5No exploitEPSS 0%

    hyperledger · ursaJan 16, 2024

  • Remote denial of service in Hyperledger Fabric Gateway

    MediumCVSS 5.3No exploitEPSS 1%

    hyperledger · fabricAug 18, 2022

  • Hyperledger Fabric through 3.0.0 and 2.5.x through 2.5.9 do not verify that a request has a timestamp within the expected time window.

    MediumCVSS 5.3Proof of conceptEPSS 1%

    hyperledger · fabricAug 24, 2024

  • Unlinkability broken in ursa when verifiers use malicious keys

    MediumCVSS 5.3No exploitEPSS 0%

    hyperledger · ursaJan 16, 2024