Elrond's vulnerability footprint centers on its Go-based blockchain implementation, with observed issues clustering around initialization logic, input validation at the protocol layer, and resource-transfer boundaries characteristic of distributed-ledger codebases. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Elrond over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-36061CRITICAL Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.35, read only calls between contracts can generate smart contracts results. For example | Sep 6, 2022 | 9.8 | 29 | NO | NO |
CVE-2022-36058HIGH Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.34, anyone who uses elrond-go to process blocks (historical or actual) could encounter | Sep 6, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-46173MEDIUM Elrond-GO is a go implementation for the Elrond Network protocol. Versions prior to 1.3.50 are subject to a processing issue where nodes are affected when trying to process a cross | Dec 28, 2022 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Elrond.
Media articles that mention a CVE ID that affects a product developed by Elrond — matched by CVE ID, not by vendor name.