Cointelegraph
DOGE$0.08851 1.97%
TRX$0.3355 0.65%
LINK$11.74 3.41%
ZEC$792.56 0.57%
ADA$0.2141 1.34%
XRP$1.42 0.43%
ETH$2,522.32 2.32%
BTC$79,657.79 0.81%
XMR$447.48 0.33%
BNB$710.99 1.72%
XLM$0.1858 0.51%
SOL$103.35 6.34%
HYPE$82.14 0.01%
Written by Ezra Reguerrastaff writerReviewed by Yohan Yunstaff editor

Core Lightning confirms multiple vulnerabilities, prepares security update

Latest NewsPublishedAug 27, 2026

Core Lightning advised operators to use offline mode if they do not install the forthcoming update, keeping their nodes active but disconnected.

Core Lightning, an open-source implementation of Bitcoin’s Lightning Network, has confirmed multiple vulnerabilities and urged node operators to install a forthcoming security update.

On Thursday, Core Lightning said it had been assessing a high volume of AI-generated Common Vulnerabilities and Exposures (CVE) reports and found that several are real. The project told operators not to shut down their nodes completely, but to restart them with “--offline,” which prevents payments from entering, leaving or routing through the node.

In a subsequent post, Core Lightning clarified that upgrading is its primary recommendation, while restarting with --offline is an alternative for operators who have not upgraded. 

The guidance gives operators an alternative for protecting their nodes until they upgrade, without shutting down the underlying software entirely. Core Lightning has not disclosed the nature or severity of the vulnerabilities, published CVE identifiers or reported any related exploitation or losses.

Core Lightning said keeping the daemon active allows it to follow the Bitcoin blockchain and respond if a counterparty force-closes a channel, which a stopped node cannot do. Operators using --offline were advised to remove it after upgrading or their nodes will remain disconnected.

The newly confirmed flaws are separate from remote denial-of-service vulnerabilities disclosed in May and July, which were patched in earlier releases. 

Related: StarkWare tests quantum-resistant Bitcoin transaction on mainnet

1 minute letter

Subscribe to daily byte-sized crypto news from Cointelegraph

Subscribe
Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently.

More on the subject