Aztec is urging holders of funds on its Alpha V4 network to withdraw before June 25, when a planned governance step to bring V5 to the network will make the current version's security vulnerabilities publicly visible.

The privacy-focused Ethereum layer-2 posted the warning on X, calling on users to move funds out of V4 before the V5 governance vote proceeds. Once V5 enters the governance process, details of the V4 vulnerabilities will become publicly disclosed, opening a window in which any remaining funds could be at risk. The notice frames this as a standard migration tied to the upgrade cycle, not a response to an active exploit.

Aztec disclosed a critical vulnerability in Alpha V4 in March 2026, saying the flaw affects "the proving system as a whole" and that exploitation "can lead to severe disruption of the protocol and theft of user funds." The team committed at that time to keeping the specific bug details private until the V5 release, consistent with its stated security policy.

That policy notes that each new alpha release gets its own bug tracker, and that V5 would package all fixes from ongoing audits. The V5 release has been planned for July 2026.

The June 25 deadline is the critical gap: when the V5 governance proposal goes on-chain, Aztec's transparency commitments require the underlying V4 bugs to be disclosed publicly. Users who have not withdrawn by then would be operating in a version with known, public vulnerabilities and no imminent patch.