Core Lightning Urges Node Operators to Shut Down Immediately as Patch Remains Unavailable

TL;DR:
- Core Lightning developers instructed node operators to run their systems using the –offline flag while patched binaries are released.
- Technical documentation and vulnerability details will remain under a two-week embargo period.
- The incident marks the fourth security alert across Bitcoin infrastructure over the past four weeks, following issues in Coldcard, Boltz, and BTCPay Server.
This Wednesday, August 26, Core Lightning (CLN) developers recommended that operators urgently shut down their nodes or run them offline immediately. The preventive measure is requested ahead of the official release of the security patch.
If you run Core Lightning: when the release is published: upgrade with signed binaries, or start your node with `–offline`.
Details stay under embargo for two weeks. Previous releases, including 26.04, are unsupported.
Full details when the embargo lifts. The 26.09 release is… https://t.co/lruDzbYmd7
- Core Lightning (@Core_LN) August 26, 2026
The instruction circulated through technical support channels and Lightning Network developer communities. The team’s formal recommendation states that operators unable to update their systems must restart the node daemon using the –offline parameter.
… Continue reading the full article at the original source below.


