CVE-2026-104432 | ZcashFoundation Zebra up to 6.2.x ChainSync ChainSync::obtain_tips improper synchronization

SecurityVulns

A vulnerability identified as problematic has been detected in ZcashFoundation Zebra up to 6.2.x. The impacted element is the function ChainSync::obtain_tips of the component ChainSync. Performing a manipulation results in improper synchronization.

This vulnerability is cataloged as CVE-2026-104432. It is possible to initiate the attack remotely. There is no exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More