Jose Daniel Hernandez
14 exploits
Active since Feb 2026
nimiq-block has skip block quorum bypass via out-of-range BitSet indices & u16 truncation
CVSS 9.6
Nimiq has Allocation of Resources Without Limits or Throttling in its libp2p request/response
CVSS 5.3
network-libp2p: Peer can crash the node by opening discovery protocol substream twice
CVSS 7.5
nimiq-account: Vesting insufficient funds error can panic
CVSS 5.3
nimiq-primitives: Node crash due to missing interlink validation in election macro block proposals
CVSS 7.5
nimiq-blockchain: Peer-triggerable panic during history sync
CVSS 5.3
nimiq-transaction vulnerable to panic via `HistoryTreeProof` length mismatch
CVSS 3.1
nimiq-transaction: UpdateValidator transactions allows voting key change without proof-of-knowledge
CVSS 6.8
nimiq-consensus panics via RequestMacroChain micro-block locator
CVSS 5.3
Nimiq: Remote crash via off-by-one signer bounds check in proposal buffer
CVSS 7.5
nimiq/core-rs-albatross: Discovery handshake limit could underflow and later provoke a deterministic overflow panic
CVSS 7.5
nimiq/core-rs-albatross: Macro block proposal interlink bug
CVSS 4.9
nimiq/core-rs-albatross: Panic in history index request handlers when a full node runs without the history index
CVSS 5.3
nimiq/core-rs-albatross <1.2.2 - Auth Bypass
CVSS 7.1