Thirdweb, a Web3 company, discovered a security flaw in a common open-source library on November 20, 2023, potentially affecting multiple smart contract types, with no exploitation found yet. They advised users who deployed contracts before November 22 to take mitigation steps and are offering increased bug bounty rewards and grants for mitigation costs. Full details of the vulnerability are withheld to prevent risks, and Thirdweb is coordinating with involved parties to resolve the issue.


Cointelegraph
Web3 firm detects major security flaw in common smart contracts
Thirdweb listed some of the contracts affected, which included those for ERC-20 airdrops and ERC-721 and ERC-1155 Ethereum standards.















