CVE-2018-11239: Hexagontoken Hexagon
High severity, CVSS 7.5. EPSS: 0.9% chance of exploitation in the next 30 days.
An integer overflow in the _transfer function of a smart contract implementation for Hexagon (HXG), an Ethereum ERC20 token, allows attackers to accomplish an unauthorized increase of digital assets by providing a _to argument in conjunction with a large _value argument, as exploited in the wild in May 2018, aka the "burnOverflow" issue.
Affected products
- Hexagontoken Hexagon: affected versions not specified
Published 2018-05-19. Last modified 2026-06-17.