CVE-2026-35679

Zcash zcashd before 6.12.0 allows invalid transactions to be accepted under certain conditions, which potentially could have resulted in the draining of user funds from the Sprout pool. It was sometimes not verifying Sprout proofs.
Configurations

No configuration.

History

05 Apr 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-05 22:16

Updated : 2026-04-07 13:20


NVD link : CVE-2026-35679

Mitre link : CVE-2026-35679

CVE.ORG link : CVE-2026-35679


JSON object : View

Products Affected

No product.

CWE
CWE-358

Improperly Implemented Security Check for Standard