Description
The Rattadan Cosmowarp smart contract before 56c6147 can have a comparison to an unintended value of current_admin.
Published: 2026-09-25
Score: 8.4 High
EPSS: n/a
KEV: No
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

Vendor Solution

Throw an unauthorized error on empy admin states.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 25 Sep 2026 19:00:00 +0000

Type Values Removed Values Added
Title Unintended Admin Comparison Allows Unauthorized Privilege Escalation in Cosmowarp Contract

Fri, 25 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 25 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description The Rattadan Cosmowarp smart contract before 56c6147 can have a comparison to an unintended value of current_admin.
Weaknesses CWE-1025
References
Metrics cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N/AU:Y/R:I/RE:H/U:Red'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-25T17:52:46.572Z

Reserved: 2026-09-25T16:11:54.521Z

Link: CVE-2026-100248

cve-icon Vulnrichment

Updated: 2026-09-25T17:52:31.239Z

cve-icon NVD

Status : Received

Published: 2026-09-25T17:17:07.243

Modified: 2026-09-25T18:17:07.620

Link: CVE-2026-100248

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-25T18:45:17Z

Weaknesses