BTC $77,505.52 +1.26%
ETH $2,463.61 +2.15%
BNB $698.29 +1.48%
XRP $1.48 +0.57%
SOL $94.76 +1.56%
TRX $0.3436 +0.26%
DOGE $0.0912 +0.23%
ADA $0.2199 +0.11%
BCH $270.30 -0.23%
LINK $11.60 +2.02%
HYPE $78.55 -0.63%
AAVE $138.38 +11.03%
SUI $0.8193 +2.46%
XLM $0.1946 +1.02%
ZEC $831.45 +3.31%
BTC $77,505.52 +1.26%
ETH $2,463.61 +2.15%
BNB $698.29 +1.48%
XRP $1.48 +0.57%
SOL $94.76 +1.56%
TRX $0.3436 +0.26%
DOGE $0.0912 +0.23%
ADA $0.2199 +0.11%
BCH $270.30 -0.23%
LINK $11.60 +2.02%
HYPE $78.55 -0.63%
AAVE $138.38 +11.03%
SUI $0.8193 +2.46%
XLM $0.1946 +1.02%
ZEC $831.45 +3.31%

Besu fixes 5 security vulnerabilities: version 26.7.1 was released on July 27

2026-08-24 14:41:52

The Ethereum client Besu has fixed five security vulnerabilities discovered by the blockchain security company CertiK in version 26.7.1 released on July 27, and published four detailed security announcements on August 14. The details of the vulnerabilities were disclosed later to allow node operators to complete the upgrade deployment.

Jialiang Chang, CertiK's Director of Security Engineering and Senior Audit Partner, stated that the arrangement of releasing patches first and details later provides an 18-day buffer period, allowing node operators to identify affected deployments, test the new version, and coordinate with validators or consortium participants to complete the upgrade. The relevant vulnerabilities involve block broadcasting processing, future height consensus proposal caching, WebSocket subscription limits, and JSON-RPC filter creation. If not fixed, attackers could exhaust node memory or thread resources, affecting node availability and consensus processing.

CertiK conducted adversarial testing on peer-to-peer, HTTP RPC, WebSocket RPC, and consensus interfaces in a private multi-node test network using the Chain Scan method, and provided reproducible testing tools to the Besu team. CertiK is updating Chain Scan to expand around-the-clock multi-node testing for public chain networks.

app_icon
ChainCatcher Building the Web3 world with innovations.