Homograph attack allows Unicode lookalike characters to bypass validation.
Package
Affected versions
= 5.0.0
= 4.0.0
<= 3.0.10
Patched versions
5.0.1
4.0.1
3.0.11
Description
Published to the GitHub Advisory Database
Apr 30, 2025
Reviewed
Apr 30, 2025
Published by the National Vulnerability Database
Apr 30, 2025
Last updated
May 1, 2025
Impact
Attackers can deceive users into sending funds to an unintended address.
Patches
cryptocoinjs/base-x#86
References