What is CVE-2026-46403?
A vulnerability in the Klever-Go blockchain protocol's KVM involves improper handling of the read-only state in the `ExecuteReadOnlyWithTypedArguments` function. Affecting versions prior to 1.7.17, it temporarily sets and restores the read-only flag during context execution, potentially weakening security. Users must upgrade to version 1.7.17 or later immediately.
Azərbaycanca: Klever-Go blokçeyn protokolunda aşkar edilən zəiflik KVM-də `ExecuteReadOnlyWithTypedArguments` funksiyasının oxuma rejimini (`read-only`) keçici olaraq səhv idarə etməsi ilə bağlıdır. Bu, 1.7.17 versiyasından əvvəlki sistemlərə təsir edir və kontekst icrası zamanı müdafiəni zəiflədə bilər. İstifadəçilər dərhal 1.7.17 və ya daha yuxarı versiyaya yeniləməlidir.
FAQ2
In which component of the Klever-Go protocol was CVE-2026-46403 discovered?
The vulnerability is related to improper handling of the read-only state in the `ExecuteReadOnlyWithTypedArguments` function within the KVM.
Which version is recommended to upgrade to in order to mitigate CVE-2026-46403?
Users should upgrade to version 1.7.17 or later, as the vulnerability affects versions prior to 1.7.17.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.