The vulnerability affected version 1.22.1 of the Ethereum app for Ledger and allowed a race condition that replaced transactions before signing. The manufacturer patched the initial flaw on August 13, 2026, in version 1.22.2 and strengthened the system with Secure SDK 26.6.1 on August 21, 2026.