Chia develops a blockchain network and associated software components that support distributed consensus and transaction validation, with its vulnerability exposure concentrated in authentication and authorization mechanisms across network-layer and application interfaces. The recurring weakness classes—improper and missing authentication, missing authorization, and cross-site request forgery—reflect the security boundaries endemic to peer-to-peer systems and web-facing administrative surfaces. Current vulnerability counts, severity distribution, and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Chia over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-3192HIGH A security vulnerability has been detected in Chia Blockchain 2.1.0. This issue affects the function _authenticate of the file rpc_server_base.py of the component RPC Credential Ha | Feb 25, 2026 | 8.1 | 25 | NO | NO |
CVE-2022-36447HIGH An inflation issue was discovered in Chia Network CAT1 Standard 1.0.0. Previously minted tokens minted on the Chia blockchain using the CAT1 standard can be inflated to an arbitrar | Jul 29, 2022 | 7.5 | 25 | NO | NO |
CVE-2026-3194HIGH A flaw has been found in Chia Blockchain 2.1.0. The affected element is the function send_transaction/get_private_key of the component RPC Server Master Passphrase Handler. This ma | Feb 25, 2026 | 7.0 | 21 | NO | NO |
A vulnerability was detected in Chia Blockchain 2.1.0. Impacted is an unknown function of the file /send_transaction. The manipulation results in cross-site request forgery. The at | Feb 25, 2026 | 3.1 | 16 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Chia.
Media articles that mention a CVE ID that affects a product developed by Chia — matched by CVE ID, not by vendor name.