Crypto•10 October 2026•
1 min read

RippleX Deploys Emergency Patch to Fix XRP Ledger Vulnerability

Key Facts

1RippleX released emergency update xrpld 3.4.1 to fix an integer-overflow bug that allowed the creation of unfunded tokens.
2Researchers confirmed no evidence of exploitation for the bug which remained undetected for over a decade before being patched.

RippleX released emergency update xrpld 3.4.1 to fix an integer-overflow bug in the XRP Ledger's decentralized exchange payment engine that theoretically allowed the creation of unfunded tokens. TokenPost reported that the vulnerability occurred during the processing of order-book offers, which could cause arithmetic to overflow and miscalculate buyer payments while crediting sellers with full amounts.

Researchers confirmed to CoinGape that there is no evidence the bug was exploited, despite remaining undetected for over a decade since the payment engine was written in 2015. The flaw was reported through a bug bounty program on September 22, 2026, and RippleX successfully reproduced the issue on a standalone server to verify the creation of spendable tokens before deploying the patch.