Rattadan Cosmowarp Smart Contract Vulnerability Affecting Rattadan
CVE-2026-100248

8.4HIGH

Key Information:

Vendor

Rattadan

Vendor
CVE Published:
25 September 2026

What is CVE-2026-100248?

The Rattadan Cosmowarp smart contract is susceptible to vulnerabilities due to the potential misconfiguration in value comparisons governing the current_admin setting. Before version 56c6147, the smart contract's logic could erroneously evaluate the current_admin against unintended values. This flaw may allow unauthorized access or administrative control, leading to significant security risks. Users are encouraged to upgrade to secure their implementations as outlined in the patch provided by Rattadan.

Affected Version(s)

Cosmowarp Contract CosmWasm 0 < 56c6147ee613a6aaa157ecefe2f7bf0ad9084fa8

References

CVSS V4

Score:
8.4
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.