cggmp21 concerns a missing check in the ZK proof that enables an attack in which a single malicious signer can reconstruct full private key.
cggmp21 v0.6.3 is a patch release that contains a fix that introduces this specific missing checkcggmp24 v0.7.0-alpha.2 which contains many other security checks as a precaution. Follow migration guideline to upgrade.Update to cggmp21 v0.6.3, a minor release that contains a minimal security patch.
However, for full mitigation, users will need to upgrade to cggmp24 v0.7.0-alpha.2 as it contains many more security check implementations.
Read this blog post to learn more.
{
"nvd_published_at": "2025-11-25T20:16:00Z",
"github_reviewed": true,
"github_reviewed_at": "2025-11-25T20:41:04Z",
"severity": "CRITICAL",
"cwe_ids": [
"CWE-345",
"CWE-347"
]
}