The XRP Ledger patched a decade-old vulnerability that could generate unlimited XRP from nothing, according to CoinDesk reporting. Researchers discovered the bug enabled payments to create spendable XRP without the sender actually funding the transaction.
The flaw persisted in the ledger's code for approximately ten years before detection. Its exploitation would have allowed bad actors to mint billions of dollars worth of XRP, fundamentally undermining the cryptocurrency's scarcity and economic model.
The discovery prompted an emergency software release to address the vulnerability. The XRP Ledger development team responded with urgency to patch the critical flaw before malicious actors could weaponize it at scale.
Researchers demonstrated a proof-of-concept showing how the payment mechanism could be manipulated to generate spendable XRP without proper funding from the sender. This proof validated the severity of the vulnerability and justified immediate remediation efforts.
The bug represents a rare critical flaw in a blockchain that has operated since 2012. Most blockchain vulnerabilities of this magnitude emerge relatively early in a network's lifecycle, making the decade-long existence of this particular issue noteworthy.
The patch release ensured that XRP holders and network participants could continue using the ledger without exposure to infinite token creation attacks. By fixing the vulnerability, the XRP Ledger maintained the integrity of its token supply mechanics and preserved user confidence in the network's security foundations.
