-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 0xCERT Security Advisory 0xCERT-2026-0181 ============================================================ Advisory-ID: 0xCERT-2026-0181 Severity: High Published: 2026-09-25T17:17:07.243Z Updated: 2026-10-08T22:46:38.696Z Chains: n/a URL: https://www.0xcert.com/advisory/0xCERT-2026-0181 Title: CVE-2026-100248: The Rattadan Cosmowarp smart contract Summary - ------- The Rattadan Cosmowarp smart contract before 56c6147 can have a comparison to an unintended value of current_admin. Details - ------- Summary The Rattadan Cosmowarp smart contract before 56c6147 can have a comparison to an unintended value of current_admin. Severity High (CVSS 8.4), as scored by NVD. Weakness - - CWE-1025 Recommended actions - - Check whether you run or depend on the affected component and version - - Apply the vendor's fix or mitigation from the references below Source & attribution This 0xCERT advisory summarises CVE-2026-100248 from the U.S. National Vulnerability Database: https://nvd.nist.gov/vuln/detail/CVE-2026-100248. Details may change; refer to the original source for the authoritative record. References - ---------- - - https://nvd.nist.gov/vuln/detail/CVE-2026-100248 - - https://github.com/rattadan/Cosmowarp_Contract/blob/cc75c6f105ddae7627d878365637ebc279f4821d - - https://github.com/rattadan/Cosmowarp_Contract/blob/cc75c6f105ddae7627d878365637ebc279f4821d/asset_registry/src/contract.rs#L343 - - https://github.com/rattadan/Cosmowarp_Contract/commit/56c6147ee613a6aaa157ecefe2f7bf0ad9084fa8 Verify with the 0xCERT OpenPGP key: https://www.0xcert.com/pgp.asc Fingerprint: 5F94 3ED1 1E50 CF31 2128 C493 CCC7 D9EC 9415 723D -----BEGIN PGP SIGNATURE----- wrsEARYKAG0FgmrIRtIJEDe9Tbcr+ZxrRRQAAAAAABwAIHNhbHRAbm90YXRp b25zLm9wZW5wZ3Bqcy5vcmdBfJb0RCD0mHLHclPkDqBxOViGbRrbBkBgww7d go+sYxYhBGCkkFZbJcT5QWu27ze9Tbcr+ZxrAADcEAD/ZHL7WOK6idfOR/KA qSlGSywEBHQxOCDJCCGc11+I9LIA/RcoA8ffILMxA8zpLxI0DDoVJESY2JkA ydAFDAtXzcQJ =sojY -----END PGP SIGNATURE-----