Description
There is a security vulnerability in outdated versions of the x402 SDK. This does not directly affect users’ keys, smart contracts, or funds.
This primarily impacts builders working on resource servers.
Recommendation
Update the x402 package to the latest compatible version. Followings are version details:
- Affected version(s): < 0.5.2
- Patched version(s): 0.5.2
References
Could your website be exposed too?
SmartScanner can check your website for x402 SDK vulnerable in outdated versions in resource servers for builders - x402 and gives you actionable findings to investigate.
Start a free scanRelated Issues
- x402 SDK vulnerable in outdated versions in resource servers for builders - Vulnerability
- x402 SDK Security Advisory - Vulnerability
- Sentry's Astro SDK vulnerable to ReDoS - CVE-2023-50249
- CleverTap Web SDK is vulnerable to DOM-based XSS via handleCustomHtmlPreviewPostMessageEvent function - CVE-2026-26861


