The BTCPay Server team posted an urgent statement on their X account after detecting a critical vulnerability that is being actively exploited in its software. The platform warned that users’ funds could be at risk and requested the entire community to update their servers to version 2.4.2 as soon as possible. If unable to apply the patch immediately, the team recommended turning off the server to prevent unauthorized access.
There is a critical vulnerability being actively exploited on BTCPay Server, which can result in the loss of funds.
Please update your BTCPayServer to 2.4.2 by going to Admin Dashboard -> Server -> Maintenance -> Update & verify the 2.4.2 version string in the footer.
If you…
— BTCPay Server (@BtcpayServer) August 7, 2026
BTCPay Server is an open-source, self-hosted Bitcoin payment processor, widely used by merchants and privacy advocates to receive payments without intermediaries. The news generates serious concern in the ecosystem, given that the exact attack vector and total amount of associated losses have not yet been disclosed. This alert also coincides with the recent vulnerability reported in Coldcard wallets, increasing caution regarding custody infrastructure.
As an immediate step, node administrators and merchants must verify their infrastructure version and update to version 2.4.2 or temporarily suspend the service. The community remains waiting for a detailed technical report from the developers.
Source: https://x.com/BtcpayServer/status/2085755643659522240
Disclaimer: Crypto Economy Flash News are prepared from official and verified public sources by our editorial team. Their purpose is to quickly inform about relevant events in the crypto and blockchain ecosystem. This information does not constitute financial advice or investment recommendations. We recommend always verifying the official channels of each project before making related decisions.





