12 Total advisories
12 Vulnerabilities
0 Malware
Dependency scanning
Check whether github.com/evmos/evmos/v10 is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
HIGH 7.5
CVE-2024-37153
Contract balance not updating correctly after interchain transaction
LOW 3.5
CVE-2024-32873
evmos allows transferring unvested tokens after delegations
UNKNOWN
CVE-2024-32873
Evmos is missing precompile checks in github.com/evmos/evmos
UNKNOWN
CVE-2024-32873
Evmos is missing create validator check in github.com/evmos/evmos
UNKNOWN
CVE-2024-32873
evmos allows transferring unvested tokens after delegations in github.com/evmos/evmos
UNKNOWN
CVE-2024-37153
Contract balance not updating correctly after interchain transaction in github.com/evmos/evmos
UNKNOWN
GHSA-v6rw-hhgg-wc4x
Evmos vulnerable to DOS and transaction fee expropriation through Authz exploit in github.com/evmos/evmos
UNKNOWN
GHSA-m99c-q26r-m7m7
Evmos vulnerable to unauthorized account creation with vesting module in github.com/evmos/evmos
UNKNOWN
CVE-2024-39696
Evmos vulnerable to exploit of smart contract account and vesting in github.com/evmos/evmos
UNKNOWN
CVE-2024-37154
Evmos allows unvested token delegations in github.com/evmos/evmos
UNKNOWN
CVE-2024-32644
Evmos transaction execution not accounting for all state transition after interaction with precompiles in github.com/evmos/evmos
MEDIUM 5.3
CVE-2024-37154
Evmos allows unvested token delegations
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes