lnbits@0.10.3.dev1 vulnerabilities

LNbits, free and open-source Lightning wallet and accounts system.

Direct Vulnerabilities

Known vulnerabilities in the lnbits package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Improper Check for Unusual or Exceptional Conditions

lnbits is a LNbits, free and open-source Lightning wallet and accounts system.

Affected versions of this package are vulnerable to Improper Check for Unusual or Exceptional Conditions in eclair.py, which treats a payment in progress as failed if it exceeds the timeout duration. This allows attackers to make payments that are really being settled appear cancelled.

How to fix Improper Check for Unusual or Exceptional Conditions?

Upgrade lnbits to version 0.12.6 or higher.

[,0.12.6)