Zebra Vulnerable to Consensus Divergence in Transparent Sighash Hash-Type Handling — CVE-2026-41583
GitHub · GitHub · CVE-2026-41583
ID
CVE-2026-41583
CVE-2026-41583
Date
Updated
Activity
Source
GitHub
GitHub
Vendor
GitHub
GitHub
Threat
critical
critical
CVSS
9.3
9.3
EPSS
0.00049
0.00049
Summary
# CVE-2026-41583: Consensus Divergence in Transparent Sighash Hash-Type Handling ## Summary After a refactoring, Zebra failed to validate a consensus rule that restricted the possible values of sighash hash types for V5 transactions which were enabled in the NU5 network upgrade. Zebra nodes could thus accept and eventually mine a block that would be considered invalid by zcashd nodes, creating a consensus split…
Product
rust: zebrad | rust: zebra-script
What to do
General, cautious steps (verify details in the official source):
- Prioritize patching or mitigation immediately (treat as actively risky).
- Identify affected product versions in your inventory and verify whether you are impacted.
- Apply vendor patches/updates or recommended mitigations as soon as available.
- Read the official advisory for exact affected versions and remediation steps.