High severity7.5NVD Advisory· Published Sep 18, 2022· Updated Jun 17, 2026
CVE-2022-40769
CVE-2022-40769
Description
profanity through 1.60 has only four billion possible RNG initializations. Thus, attackers can recover private keys from Ethereum vanity addresses and steal cryptocurrency, as exploited in the wild in June 2022.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:profanity_project:profanity:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:profanity_project:profanity:*:*:*:*:*:*:*:*range: <=1.60
- (no CPE)range: <=1.60
- profanity/profanitydescription
Patches
Vulnerability mechanics
References
2- blog.1inch.io/a-vulnerability-disclosed-in-profanity-an-ethereum-vanity-address-tool-68ed7455fc8cnvdThird Party Advisory
- github.com/johguse/profanity/issues/61nvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.