Skip to content
Back to Guavy Wire
Crypto

Polygon Unveils Critical Hard Forks to Plug Security Holes

Instruments
MATIC POL
Share

Polygon Labs has released two critical hard forks to address significant security vulnerabilities found in its network. The company disclosed details about these upgrades, which include the Austin and Kyoto forks, in a newly published forum post, calling on all node operators to update their software or risk being removed from the network consensus.

The most severe flaw was discovered in Heimdall, the coordination software used by Polygon validators. This vulnerability stemmed from how Heimdall handled transaction data, placing each transaction inside a wrapper called google.protobuf.Any. The Kyoto hard fork upgraded Heimdall to version 0.11.0 and implemented a byte-level pre-scan mechanism that rejects any transaction exceeding a set nesting threshold.

The Austin hard fork addressed two denial-of-service vulnerabilities in Bor, Polygon's transaction execution client. To prevent these risks, the Austin upgrade introduced a strict per-block gas limit on state-sync events and eliminated the TxDependency field from the communication format entirely.

More on Crypto

Disclaimer: Guavy is a data and market intelligence provider, not an investment adviser. The information, signals, and market analysis provided by the Guavy API and related services are for informational purposes only and are not intended as financial advice, investment recommendations, or an endorsement of any particular trading strategy. Trading in volatile markets, including cryptocurrency, carries significant risk and may not be suitable for all investors. Past performance is not indicative of future results. Users should consult with a qualified financial professional before making any investment decisions. Guavy makes no guarantee of trading profits or financial returns.

Market sentiment intelligence for apps, funds & agents

Location

729 55 Ave SW
Calgary AB T2V 0G4
Canada

© 2026 Guavy Inc