- Besu disclosed five security vulnerabilities identified by CertiK and fixed in version 26.7.1.
- The update added limits for JSON-RPC filters and WebSocket subscriptions.
Ethereum client Besu has disclosed details of five security vulnerabilities identified by blockchain security firm CertiK, all of which were fixed in version 26.7.1 released on July 27. Besu is an open-source Ethereum execution client used on public and private networks.
The issues ranged from Minor to Major severity and were addressed before their technical details were made public on August 14. Besu urged node operators to upgrade to the patched version, giving them time to update their systems before the vulnerabilities were disclosed.
thenewscrypto.com