A vulnerability classified as problematic was found in ZenHive mpp up to 0.5.9. This vulnerability affects the function rpc_broadcast_sync of the component Tempo. Such manipulation of the argument gas_limit leads to denial of service.

This vulnerability is listed as CVE-2026-59252. The attack may be performed from remote. There is no available exploit.