Package impact
RUBYGEMS / bsv-sdk
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-40070 | high | — | 8.0 | 2mo ago | bsv-sdk and bsv-wallet persist unverified certifier signatures in acquire_certificate (direct and issuance paths) | |||
| CVE-2026-40069 | high | 7.5 | 7.5 | 2mo ago | bsv-sdk ARC broadcaster treats INVALID/MALFORMED/ORPHAN responses as successful broadcasts |