# Klever Blockchain Mainnet Release v1.7.20

**URL:** <https://forum.klever.org/t/klever-blockchain-mainnet-release-v1-7-20/4487>\
**Category:** News and Announcements\
**Tags:** kleverchain, validator, security\
**Created:** [July 20, 2026, 6:05pm UTC](https://forum.klever.org/t/klever-blockchain-mainnet-release-v1-7-20/4487 "2026-07-20T18:05:18Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![Duka](https://dub1.discourse-cdn.com/flex013/user_avatar/forum.klever.org/duka/32/415_2.png) [@Duka](https://forum.klever.org/u/Duka)\
**Post date:** [July 20, 2026, 6:05pm UTC](https://forum.klever.org/t/klever-blockchain-mainnet-release-v1-7-20/4487/1 "2026-07-20T18:05:18Z")

</div>

![image](https://europe1.discourse-cdn.com/flex013/uploads/klever/original/2X/6/61d8462b48697d1cddcde61689ef20e0e0123bc9.jpeg)

**Dear Validators, Node Maintainers, and Exchange Partners,**

**This is a MANDATORY and CRITICAL security upgrade.**

The Klever Blockchain team has officially released **v1.7.20** for the Mainnet. This is a **Coordinated Security Release & CertiK Audit Remediation**. This release addresses critical vulnerabilities and introduces fork updates necessary for the continued security and consensus of the Klever network.

### ⚠ URGENCY & SECURITY WARNING ⚠

Failure to upgrade your node prior to **Epoch 5911** will result in a hard fork from the main network. Nodes running older versions may fall out of consensus, resulting in validators being **jailed** and potential loss of rewards. **Every node MUST run a config whose `fixAuditChangesV3` activation epoch matches the network**. We urge all maintainers and exchanges to treat this update with the highest priority to ensure the continued security of the Klever ecosystem.

### ⏳ Deadline

**Saturday, 18 July 2026, 07:00 UTC**

_(Upgrade strictly before Epoch 5911)_

### ⚙ Detailed Security & Release Highlights (v1.7.20)

This version remediates CertiK protocol audit findings and closes seven coordinated-disclosure security advisories. Key updates include:

- **Critical Fix (GHSA-97cv-x867-6xhm):** Patches an account takeover vulnerability via spoofable `RecipientAddr` in permission updates.

- **High Severity Fixes:**

- **CertiK Audit Remediations:** Includes multiple KVM and contract-execution hardening measures, such as bounds checking, royalty snapshots, and secure buffer storage handling.

- **Fork Gate (`fixAuditChangesV3`):** Consensus-affecting fixes are gated behind the `fixAuditChangesV3` fork flag. On mainnet, this fork is active as of epoch 5911.

- **Operator Tooling & Endpoints:** Adds `ms sign` subcommand for multisig transactions and new network supply endpoints (`/network/economics`, `/network/account-totals`).

_For a comprehensive technical breakdown of all features, CVEs, and improvements, please review the official release notes:_

[Klever-go v1.7.20 Release Notes](https://github.com/klever-io/klever-go/releases/tag/v1.7.20)

### 🛠 Step-by-Step Upgrade Instructions

**CRITICAL:** You _must_ update your configuration files _prior_ to updating the node to ensure the `fixAuditChangesV3` activation epoch matches the network (mainnet: 5911).

Please carefully execute the following steps:

**1. Download the new config:**

```bash
curl -k https://backup.mainnet.klever.org/config.mainnet.108.tar.gz | tar -xz -C ./node

```

**2. Download the new image version:**

```bash
docker pull kleverapp/klever-go:v1.7.20-0-g0b70b0f

```

**3. Update the permissions of the database directories:**

```bash
chown -R 999 $(pwd)/node/config
chown -R 999 $(pwd)/node/db
chown -R 999 $(pwd)/node/logs

```

**4. Stop and remove your current node:**

```bash
docker stop klever-node && docker rm klever-node

```

**5. Run your node again:**

```bash
docker run -it -d --restart unless-stopped \
    --user "$(id -u):$(id -g)" \
    --name klever-node \
    -v $(pwd)/node/config:/opt/klever-blockchain/config/node \
    -v $(pwd)/node/db:/opt/klever-blockchain/db \
    -v $(pwd)/node/logs:/opt/klever-blockchain/logs \
    --network=host \
    --entrypoint=/usr/local/bin/validator \
    kleverapp/klever-go:v1.7.20-0-g0b70b0f \
    '--log-save' '--use-log-view' '--rest-api-interface=0.0.0.0:8080'

```

If you encounter any issues during the upgrade process, please reach out to the Klever developer support channels immediately.

_Thank you for securing the Klever Blockchain._
