XRP Ledger patches decade-old bug that could have minted extra XRP
Image: Crypto BriefingThe XRP Ledger has disclosed a critical overflow bug in its payment engine that dated to 2015. The flaw, present in xrpld versions 3.4.0 and earlier, could have let attackers create spendable XRP beyond the network's 100 billion token supply cap. The bug was reported via the XRPL Bug Bounty program on September 22, 2026, and patched in an emergency release (xrpld 3.4.1) on September 25, 2026. The patch skipped the usual validator voting process for XRP Ledger changes. No evidence of exploitation exists, and the XRP supply remains intact.
Key points
- A critical overflow bug in the XRP Ledger's payment engine could have created XRP beyond its 100 billion supply cap.
- The patch was deployed without the standard validator voting process for XRP Ledger rule changes.
- There is no evidence the bug was ever exploited, and the XRP token supply remains intact.
Why it matters
The bug threatened the core promise of XRP's fixed 100 billion token supply, a key part of its value proposition. Unpatched nodes running xrpld versions older than 3.4.1 remain exposed to the publicly documented flaw.
Price context · XRP
At publication
$1.41
Now
$1.41
Change since
+0.00%
7 days · dashed line = publication
Sources · 3 publishers
CoinCentral
Tier 3
XRP Ledger Fixes Old Bug That Could Have Created Billions In Fake Tokens
Bitcoin.com News
Tier 2
A Decade-Old XRP Ledger Bug Could Have Minted XRP Out of Thin Air
Coverage timeline
- First reported by Crypto Briefing
- Confirmed by CoinCentral
- CryptoVideos brief published
How this brief was made. Our system found this event in 3 independent publications, summarised two complete reports with AI and checked every number above against the source text. Sources are linked in full. Not financial advice. Report an error