ink
Activity
- Latest release
- 10mo ago
- Total releases
- 22
- Cadence
- ~27 days
- Last 12 months
- 2
Details
- License
- Apache-2.0
- First release
- Oct 20, 2017
| Version | Released | |
|---|---|---|
6.0.0-beta.1
unknown
|
6.0.0-beta.1
unknown
Dependencies (18)
+ 10 more |
|
6.0.0-beta
unknown
|
6.0.0-beta
unknown
Dependencies (21)
+ 13 more |
|
6.0.0-alpha
unknown
|
6.0.0-alpha
unknown
Dependencies (21)
+ 13 more |
|
5.1.1
unknown
|
5.1.1
unknown
Dependencies (14)
+ 6 more |
|
5.1.0
unknown
|
5.1.0
unknown
Dependencies (14)
+ 6 more |
|
5.0.0
unknown
|
5.0.0
unknown
Dependencies (13)
+ 5 more |
|
5.0.0-rc.3
unknown
|
5.0.0-rc.3
unknown
Dependencies (13)
+ 5 more |
|
5.0.0-rc.2
unknown
|
5.0.0-rc.2
unknown
Dependencies (13)
+ 5 more |
|
5.0.0-rc.1
unknown
|
5.0.0-rc.1
unknown
Dependencies (13)
+ 5 more |
|
5.0.0-rc
unknown
|
5.0.0-rc
unknown
Dependencies (12)
+ 4 more |
|
5.0.0-alpha
unknown
|
5.0.0-alpha
unknown
Dependencies (12)
+ 4 more |
|
4.3.0
unknown
|
4.3.0
unknown
Dependencies (10)
+ 2 more |
|
4.2.1
unknown
|
4.2.1
unknown
Dependencies (10)
+ 2 more |
|
4.2.0
unknown
1 CVE
CVE-2023-34449
GHSA-853p-5678-hv8f
Jun 14, 2023
ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
SummaryThe return value when using delegate call mechanics, either through DescriptionConsider this minimal example:
In this example we are executing the Running this code we expect the delegate call to return ImpactAfter conducting an analysis of the on-chain deployments of ink! contracts on Astar, Shiden, Aleph Zero, Amplitude and Pendulum, we have found that no contracts on those chains have been affected by the issue. This bug was related to the mechanics around decoding a call's return buffer, which was changed as part of https://github.com/paritytech/ink/pull/1450. Since this feature was only released in ink! 4.0.0 no previous versions are affected. MitigationsIf you have an ink! 4.x series contract, please update it to the 4.2.1 patch release that we just published. CreditsThank you Facundo Lerena from CoinFabrik for reporting this problem in a well-structured and responsible way. Fixed in
4.2.1
References
Updated Sep 10, 2026 · Source: OSV.dev |
4.2.0
unknown
Dependencies (10)
+ 2 more |
|
4.1.0
unknown
1 CVE
CVE-2023-34449
GHSA-853p-5678-hv8f
Jun 14, 2023
ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
SummaryThe return value when using delegate call mechanics, either through DescriptionConsider this minimal example:
In this example we are executing the Running this code we expect the delegate call to return ImpactAfter conducting an analysis of the on-chain deployments of ink! contracts on Astar, Shiden, Aleph Zero, Amplitude and Pendulum, we have found that no contracts on those chains have been affected by the issue. This bug was related to the mechanics around decoding a call's return buffer, which was changed as part of https://github.com/paritytech/ink/pull/1450. Since this feature was only released in ink! 4.0.0 no previous versions are affected. MitigationsIf you have an ink! 4.x series contract, please update it to the 4.2.1 patch release that we just published. CreditsThank you Facundo Lerena from CoinFabrik for reporting this problem in a well-structured and responsible way. Fixed in
4.2.1
References
Updated Sep 10, 2026 · Source: OSV.dev |
4.1.0
unknown
Dependencies (10)
+ 2 more |
|
4.0.1
unknown
1 CVE
CVE-2023-34449
GHSA-853p-5678-hv8f
Jun 14, 2023
ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
SummaryThe return value when using delegate call mechanics, either through DescriptionConsider this minimal example:
In this example we are executing the Running this code we expect the delegate call to return ImpactAfter conducting an analysis of the on-chain deployments of ink! contracts on Astar, Shiden, Aleph Zero, Amplitude and Pendulum, we have found that no contracts on those chains have been affected by the issue. This bug was related to the mechanics around decoding a call's return buffer, which was changed as part of https://github.com/paritytech/ink/pull/1450. Since this feature was only released in ink! 4.0.0 no previous versions are affected. MitigationsIf you have an ink! 4.x series contract, please update it to the 4.2.1 patch release that we just published. CreditsThank you Facundo Lerena from CoinFabrik for reporting this problem in a well-structured and responsible way. Fixed in
4.2.1
References
Updated Sep 10, 2026 · Source: OSV.dev |
4.0.1
unknown
Dependencies (10)
+ 2 more |
|
4.0.0
unknown
1 CVE
CVE-2023-34449
GHSA-853p-5678-hv8f
Jun 14, 2023
ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
None
SummaryThe return value when using delegate call mechanics, either through DescriptionConsider this minimal example:
In this example we are executing the Running this code we expect the delegate call to return ImpactAfter conducting an analysis of the on-chain deployments of ink! contracts on Astar, Shiden, Aleph Zero, Amplitude and Pendulum, we have found that no contracts on those chains have been affected by the issue. This bug was related to the mechanics around decoding a call's return buffer, which was changed as part of https://github.com/paritytech/ink/pull/1450. Since this feature was only released in ink! 4.0.0 no previous versions are affected. MitigationsIf you have an ink! 4.x series contract, please update it to the 4.2.1 patch release that we just published. CreditsThank you Facundo Lerena from CoinFabrik for reporting this problem in a well-structured and responsible way. Fixed in
4.2.1
References
Updated Sep 10, 2026 · Source: OSV.dev |
4.0.0
unknown
Dependencies (10)
+ 2 more |
|
4.0.0-rc
unknown
|
4.0.0-rc
unknown
Dependencies (10)
+ 2 more |
|
4.0.0-beta.1
unknown
|
4.0.0-beta.1
unknown
Dependencies (10)
+ 2 more |
|
4.0.0-beta
unknown
|
4.0.0-beta
unknown
Dependencies (10)
+ 2 more |
|
4.0.0-alpha.3
unknown
|
4.0.0-alpha.3
unknown
Dependencies (10)
+ 2 more |
|
0.0.0
unknown
|
0.0.0
unknown
|