CVE-2026-104422

CVE-2026-104422 published: The block sync download path in Zebra (zebrad) before 6.3.0 reads a block's height from its unvalidated coinbase scriptSig and drops blocks that appear too far behind the tip before consensus validation, without penalizing the supplying peer. Because V5 tra...

View full NVD advisory → ← Back to CVE watch