CVE-2026-57445CWE-703

CVE-2026-57445

published September 3, 2026

CVSS
8.7
EPSS
0%
Percentile
16.6
In the wild
Unconfirmed
What it is

Gardens v2 is a modular governance framework that enables communities to create and manage multiple governance pools with customizable parameters and voting mechanisms. In dfba919e218e20d52db9f7b2e8d292d45a46c91b and prior, normal beneficiary payout paths in StreamingEscrow preserve depositAmount() while an active stream needs an escrow reserve. However, the approve-side dispute resolution path drains the whole available escrow balance to the proposal beneficiary. At time of publication, there are no publicly known patches.

The record
Technical detail
CVSS
8.7 · NONE
CVSS v4.0
8.7 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
EPSS
0.00253 · 16.6th percentile
Weakness
CWE-703 · Improper Check or Handling of Exceptional Conditions
Published
2026-09-03T20:17Z
References (1)
EPSS history
Timeline
  • 05 SEP 03:43Z
    EPSS moved — → 0%
    epss
  • 03 SEP 15:17Z
    Gardens v2: Approve-side dispute resolution drains active streaming escrow reserve
    cvelistv5