Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-8rgj-285w-qcq4: Unknown vulnerability in Coinbase Wallet SDK

Impact

There is a security vulnerability in outdated versions of Coinbase Wallet SDK. This does not directly affect users’ keys, smart contracts, or funds.

Patches

Please update to version >= 4.3.0.

ghsa
#vulnerability#nodejs#git

Package

npm @coinbase/wallet-sdk (npm)

Affected versions

>= 4.0, < 4.3.0

Patched versions

4.3.0

Description

Impact

There is a security vulnerability in outdated versions of Coinbase Wallet SDK. This does not directly affect users’ keys, smart contracts, or funds.

Patches

Please update to version >= 4.3.0.

References

  • GHSA-8rgj-285w-qcq4

iamseth published to coinbase/coinbase-wallet-sdk

Feb 8, 2025

Published to the GitHub Advisory Database

Feb 10, 2025

Reviewed

Feb 10, 2025

Last updated

Feb 10, 2025

ghsa: Latest News

GHSA-r683-v43c-6xqv: samlify SAML Signature Wrapping attack