Ethereum's ($ETH) imminent and long-awaited Constantinople upgrade has been delayed after a critical vulnerability was discovered in one of the new proposals. Smart contract audit firm ChainSecurity flagged a loophole in Ethereum Improvement Proposal (EIP) 1283 that could allow an attacker to steal user funds. During a subsequent conversation, Ethereum core developers decided to delay the planned hard fork while they asses and correct the issue. The so-called "reentrancy attack" could allow a user to reenter the same function multiple times, allowing an attacker to essentially be “withdrawing funds forever,” said Joanes Espanol, CTO of blockchain analytics firm Amberdata.