diff --git a/README.md b/README.md index ff9d7ba..f343714 100644 --- a/README.md +++ b/README.md @@ -5,6 +5,14 @@ **This software is unaudited and should not be used in production. Use at your own risk.** +## WARNING! + +**DO NOT use versions of this library < `v0.30.0`** + +This library contained a critical vulnerability found by @olehmisar. The circuits were critically underconstrained, allowing anyone to impersonate public Ethereum addresses. + +See more details [here](https://gist.github.com/olehmisar/4cfe6128eaac2bfbe1fa8eb46f0116d6). +