CVE-2026-22696: Phala dcap-qvl Missing QE Identity Verification Allows Remote Attestation Bypass
Security AdvisoryCVE-2026-22696CriticalPhala Network
Affected:
- @phala/dcap-qvl <= 0.3.0
- @phala/dcap-qvl-node <= 0.3.3
- @phala/dcap-qvl-web <= 0.3.3
- dcap-qvl (Rust) < 0.3.9
- dcap-qvl (pip) < 0.3.9
Fixed in:
- @phala/dcap-qvl 0.3.9
- dcap-qvl (Rust) 0.3.9
- dcap-qvl (pip) 0.3.9
Referenced CVEs: CVE-2026-22696
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.