CVE-2026-22866Disclosure(ens.domains / ethereum_name_service)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Ethereum Name Service (ENS) is a distributed, open, and extensible naming system based on the Ethereum blockchain. In versions 1.6.2 and prior, the `RSASHA256Algorithm` and `RSASHA1Algorithm` contracts fail to validate PKCS#1 v1.5 padding structure when verifying RSA signatures. The contracts only check if the last 32 (or 20) bytes of the decrypted signature match the expected hash. This enables Bleichenbacher's 2006 signature forgery attack against DNS zones using RSA keys with low public exponents (e=3). Two ENS-supported TLDs (.cc and .name) use e=3 for their Key Signing Keys, allowing any domain under these TLDs to be fraudulently claimed on ENS without DNS ownership. Apatch was merged at commit c76c5ad0dc9de1c966443bd946fafc6351f87587. Possible workarounds include deploying the patched contracts and pointing DNSSECImpl.setAlgorithm to the deployed contract.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-347

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ethereum_name_service

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-02-25); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Products
ethereum_name_service

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-02-25: 1Mentions · 2026-02-28: 1Technical Details · 2026-02-25: 102-2502-28
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-251
Disclosure1
2026-02-281
General1
Full discourse2 posts
  • cvereports@_cvereports
    Disclosure

    CVE-2026-22866: Identity Theft by Cube Root: Forging DNSSEC in Ethereum Name Service A critical cryptographic oversight in the Ethereum Name Service (ENS) DNSSEC oracle allowed attackers to bypass RSA signature verification. By exploiting a lazy valid... https://cvereports.com/reports/CVE-2026-22866

    Post summary

    The report discloses a cryptographic flaw in ENS DNSSEC that allows attackers to bypass RSA signature verification, potentially enabling identity theft.

    02030450
    32 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-22866 Ethereum Name Service (ENS) is a distributed, open, and extensible naming system based on the Ethereum blockchain. In versions 1.6.2 and prior, the `RSASHA256Algorith… https://www.cve.org/CVERecord?id=CVE-2026-22866

    Post summary

    The text references CVE-2026-22866 for ENS but provides no actionable details, PoC, exploit, or mitigation information.

    00000287
    56.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appens.domainsethereum_name_service---

Explore more