CVE-2026-63628

CVE-2026-63628 published: mppx is a TypeScript interface for machine payments protocol. Prior to 0.8.2, the fee-payer cosigning path in src/tempo/internal/fee-payer.ts copied a client-supplied access_list from a 0x78 FeePayerEnvelope without validating its length or contents. Becaus...

View full NVD advisory → ← Back to CVE watch