Vendor
Nimiq vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 14 vulnerabilities in Nimiq: 0 in the last 7 days and 2 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-54542, was published on 14 September 2026. 4 technologies have a page of their own.
- Last 7 days
- 0
- Last 90 days
- 2
- Critical, all time
- 0
- Exploited in the wild
- 0
About Nimiq
A developer of blockchain technology and decentralized payment protocols.
Nimiq technologies
Latest Nimiq vulnerabilities
- CVE-2026-54542: Nimiq is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to…lowCVSS 3.7EPSS 0.4%
- CVE-2026-54541: Nimiq is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to…lowCVSS 3.7EPSS 0.4%
- CVE-2026-46545: Nimiq Albatross denial of service in MerkleRadixTrie synchronizationhighCVSS 7.5
- CVE-2026-46542: Nimiq core-rs-albatross DoS in Ed25519 multisig delinearizationmediumCVSS 4.3
- CVE-2026-46541: Nimiq core-rs-albatross DHT query poisoning in handle_dht_gethighCVSS 7.5
- CVE-2026-46540: Nimiq Albatross state synchronization failure in LightBlockchain rebranchmediumCVSS 6.5
- CVE-2026-46539: Nimiq BlockInclusionProof cryptographic bypass in nimiq-primitivesmediumCVSS 5.9
- CVE-2026-44505: Nimiq core-rs-albatross denial of service in DHT record handlingmediumCVSS 5.3
- CVE-2026-40094: Nimiq nimiq-network-libp2p denial of service via empty PeerContact addressesmediumCVSS 4.3
- CVE-2026-32605: Nimiq core-rs-albatross denial of service via off-by-one errorhighCVSS 7.5
- CVE-2026-34069: Nimiq nimiq-consensus panic in RequestMacroChain handlermediumCVSS 5.3
- CVE-2026-35468: Nimiq core-rs-albatross denial of service via history index panicmediumCVSS 5.3EPSS 0.5%
- CVE-2026-34061: Nimiq core-rs-albatross interlink verification bypass in election macro blocksmediumCVSS 4.9EPSS 0.2%
- CVE-2026-33184: Nimiq core-rs-albatross integer underflow in discovery handlerhighCVSS 7.5EPSS 0.5%
Most severe Nimiq vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-33184: Nimiq core-rs-albatross integer underflow in discovery handlerhighCVSS 7.5EPSS 0.5%
- CVE-2026-46545: Nimiq Albatross denial of service in MerkleRadixTrie synchronizationhighCVSS 7.5
- CVE-2026-46541: Nimiq core-rs-albatross DHT query poisoning in handle_dht_gethighCVSS 7.5
- CVE-2026-32605: Nimiq core-rs-albatross denial of service via off-by-one errorhighCVSS 7.5
- CVE-2026-46540: Nimiq Albatross state synchronization failure in LightBlockchain rebranchmediumCVSS 6.5
- CVE-2026-46539: Nimiq BlockInclusionProof cryptographic bypass in nimiq-primitivesmediumCVSS 5.9
- CVE-2026-35468: Nimiq core-rs-albatross denial of service via history index panicmediumCVSS 5.3EPSS 0.5%
- CVE-2026-44505: Nimiq core-rs-albatross denial of service in DHT record handlingmediumCVSS 5.3
- CVE-2026-34069: Nimiq nimiq-consensus panic in RequestMacroChain handlermediumCVSS 5.3
- CVE-2026-34061: Nimiq core-rs-albatross interlink verification bypass in election macro blocksmediumCVSS 4.9EPSS 0.2%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 2 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/nimiq.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Nimiq vulnerabilities", https://junglewise.ai/threats/vendors/nimiq, 26 September 2026.