Vulnerability Description
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. Users are able to delegate tokens that have not yet been vested. This affects employees and grantees who have funds managed via `ClawbackVestingAccount`. This affects 18.1.0 and earlier.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Evmos | Evmos | All versions |
Related Weaknesses (CWE)
References
- https://github.com/evmos/evmos/security/advisories/GHSA-7hrh-v6wp-53vwVendor Advisory
- https://github.com/evmos/evmos/security/advisories/GHSA-7hrh-v6wp-53vwVendor Advisory
FAQ
What is CVE-2024-37154?
CVE-2024-37154 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. Users are able to delegate tokens that have not yet been vested. This affects employees and grantees who have funds managed via `...
How severe is CVE-2024-37154?
CVE-2024-37154 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-37154?
Check the references section above for vendor advisories and patch information. Affected products include: Evmos Evmos.