Wasabi Wallet discloses high-severity OS command injection vulnerability present for two years
Wasabi Wallet disclosed a high-severity OS command injection vulnerability that existed for over two years, introduced in February 2024. The flaw could allow an attacker to craft a malicious coordinator link that, when copied to a user's clipboard and followed by clicking 'Read More', could execute commands on Linux/macOS systems.
Detected & updated continuously · Source: Nebula
Story subjects
Sources
@SimplyBitcoin
🚨 WASABI WALLET VULNERABILITY Wasabi Wallet seem to have had a backdoor for over 2 years that allowed executing commands on Linux/macOS Can’t get a break these last few weeks. 😭 https://t.co/HAKrNbpz6R
@BitcoinNewsCom
WASABI WALLET HAD HIGH-SEVERITY OS COMMAND INJECTION VULNERABILITY FOR TWO YEARS A vulnerability introduced in February 2024 could allow an attacker to craft a malicious coordinator link that, if copied into a user’s clipboard and followed by clicking “Read More” in Wasabi, https://t.co/uDe3skz7SW