CVE-2026-53924
Last modified
CVE-2026-53924 is a high-severity vulnerability rated 8.7/10 on the CVSS scale. Gardens v2 is a modular governance framework that enables communities to create and manage multiple governance pools with customizable parameters and voting mechanisms. Prior to 0xc9d4e0dacd937364793278180551e59d93cd43f9, StreamingEscrow.claim() correctly rejects withdrawals while an escrow is disputed, but the permissionless syncOutflow() path performs the same excess-balance transfer without checking disputed. EPSS estimates a 0.24% chance of exploitation in the next 30 days.
Description
Gardens v2 is a modular governance framework that enables communities to create and manage multiple governance pools with customizable parameters and voting mechanisms. Prior to 0xc9d4e0dacd937364793278180551e59d93cd43f9, StreamingEscrow.claim() correctly rejects withdrawals while an escrow is disputed, but the permissionless syncOutflow() path performs the same excess-balance transfer without checking disputed. After a streaming proposal is challenged, anyone can call syncOutflow() to transfer escrowed SuperTokens to the proposal beneficiary while the dispute is pending. If the proposal is later rejected, those tokens cannot be recovered by drainToStrategy(). This issue has been patched in 0xc9d4e0dacd937364793278180551e59d93cd43f9.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| 1Hive | gardens-v2 | < 0xc9d4e0dacd937364793278180551e59d93cd43f9 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-53924?
How severe is CVE-2026-53924?
How do I fix CVE-2026-53924?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-53914In JetBrains Kotlin before 2.4.20 code execution was possibl…9.8
- CVE-2026-53915In JetBrains GoLand before 2026.1.3 remote code execution wa…8.8
- CVE-2026-53916Memory Allocation with Excessive Size Value vulnerability in…7.5
- CVE-2026-53917Memory Allocation with Excessive Size Value vulnerability in…7.5
- CVE-2026-5392Heap out-of-bounds read in PKCS7 parsing. A crafted PKCS7 me…5.4
- CVE-2026-53923vLLM is an inference and serving engine for large language m…7.5
- CVE-2026-53925Glances is an open-source system cross-platform monitoring t…7.8
- CVE-2026-53926NocoDB is software for building databases as spreadsheets. P…6.3
- CVE-2026-53927NocoDB is software for building databases as spreadsheets. P…5.1
- CVE-2026-53928NocoDB is software for building databases as spreadsheets. P…6.3
- CVE-2026-53929NocoDB is software for building databases as spreadsheets. P…5.1
- CVE-2026-5393Dual-Algorithm CertificateVerify out-of-bounds read. When pr…9.1
Are you affected by CVE-2026-53924?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
