Zcash Fixes Critical Vulnerability Threatening Millions in Shielded ZEC Pool
Zcash developers released an emergency patch on Mar 31, 2026 to address a critical vulnerability in node software that affected a legacy shielded pool. The flaw, if exploited, could have enabled attackers to siphon large amounts of ZEC and undermined the privacy guarantees of shielded transactions. The issue primarily impacts older shielded implementations still supported by nodes that have not applied recent updates.
The project team is urging node operators, exchanges, and custodial services to upgrade to the patched release without delay and to review transaction and access logs for suspicious activity. The fix underscores ongoing risks in maintaining backward compatibility for privacy-preserving features and highlights why timely updates and audits are essential for protecting user funds and network integrity.