Polygon Fixes Security Flaws in Proof-of-Stake Infrastructure
Polygon has published details of previously undisclosed security vulnerabilities in its proof-of-stake (PoS) infrastructure. The issues included node-to-node denial-of-service risk and validator processing bottlenecks, affecting both Bor and Heimdall clients.
The problems were addressed through two recent hard forks and corresponding client upgrades: the Austin and Kyoto hard forks. Polygon stated that none of the vulnerabilities have been observed exploited on mainnet.
Polygon requires Bor v2.10.0 for PoS nodes and Heimdall v0.11.0 for validators and full nodes. Running outdated client versions after hard fork activation heights means nodes will fall out of consensus and must upgrade to rejoin.