In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade github.com/cosmos/interchain-security/v5/x/ccv/provider/keeper
to version 4.0.0 or higher.
Affected versions of this package are vulnerable to Insufficient Verification of Data Authenticity due to a missing check in the cryptographic equivocation evidence handling process. An attacker can manipulate the blockchain's integrity by submitting crafted evidence that bypasses the height verification.