VendorsZenhivemachine_payments_protocolall versions
Vulnerabilities

Zenhive Machine Payments Protocol

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2026-67581
On-chain transfer proof is not single-use in mpp EVM payment method, enabling cross-challenge replay
Published 2026-08-19 · Analyzed
8.7EPSS 0.006
CVE-2026-73541
Tempo fee sponsorship in mpp bounds each transaction but not aggregate exposure, allowing concurrent sponsor-wallet drain
Published 2026-08-19 · Analyzed
8.3EPSS 0.006
CVE-2026-73136
Static memo configuration in mpp Tempo disables per-challenge attribution binding, enabling third-party replay
Published 2026-08-19 · Analyzed
8.2EPSS 0.006
CVE-2026-73829
Non-atomic hash-credential dedup in mpp Tempo allows replay of a confirmed payment under a concurrent race
Published 2026-08-19 · Analyzed
6.3EPSS 0.003