|
medium
|
detector |
Untrusted CALL target/value reachable |
0x163a948770020a636a87a48acb33d7575445474b
|
$46,167.38 |
no
|
no
|
2 months ago
|
019c0ea9-06f3-7351-913e-e120102597a8
|
|
high
|
detector |
ETH value transfer possible |
0x15c5f0f18feb8a9f5808ccd2fc4ac279d9d89bb8
|
$46,200.14 |
no
|
no
|
2 months ago
|
019c0ea9-06d5-7319-83a0-bdeeddb23af3
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x15c5f0f18feb8a9f5808ccd2fc4ac279d9d89bb8
|
$46,200.14 |
no
|
no
|
2 months ago
|
019c0ea9-06d5-7319-83a0-bdeeddb23af3
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x15c5f0f18feb8a9f5808ccd2fc4ac279d9d89bb8
|
$46,200.14 |
no
|
—
|
2 months ago
|
019c0ea9-06d5-7319-83a0-bdeeddb23af3
|
|
high
|
codex |
Computed DELEGATECALL target reachable (arbitrary code execution risk) |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
low
|
codex |
Potential arbitrary CALLs with ETH value (authorization unclear) |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
high
|
codex |
MF_ONE valuation uses unvalidated oracle price for share minting and TVL |
0x71ea0eb2605bd63fe69012a60c75bdbd22e8b3d3
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d8-dab2-7125-9844-e6c896367631
|
|
medium
|
codex |
Strategy proxy admin fixed to creator, not current owner |
0x71ea0eb2605bd63fe69012a60c75bdbd22e8b3d3
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d8-dab2-7125-9844-e6c896367631
|
|
low
|
codex |
Rapid withdrawal refunds do not restore instant redeem limits |
0x71ea0eb2605bd63fe69012a60c75bdbd22e8b3d3
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d8-dab2-7125-9844-e6c896367631
|
|
medium
|
codex |
tx.origin used for authorization guard (heuristic, sink unknown) |
0xa0d828a754961ff78e733701eb98d22084db242c
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d8-bb60-7023-94d5-bc2e86082ed0
|
|
medium
|
slither |
Reentrancy in L1OpUSDCBridgeAdapter.burnLockedUSDC() (src/contracts/L1OpUSDCBridgeAdapter.sol#113-137): |
0x73d0fd329abecfbca9e0a482ed161a01616d9fca
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d7-f3f6-7335-be5b-07a67d5c232d
|
|
critical
|
codex |
Computed DELEGATECALL target reachable |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d7-e47d-7320-ae56-01c14905ff89
|
|
medium
|
codex |
Computed CALLCODE target executes in caller storage |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d7-e47d-7320-ae56-01c14905ff89
|
|
medium
|
codex |
External CALLs with computed targets and ETH value |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d7-e47d-7320-ae56-01c14905ff89
|
|
high
|
codex |
Relayer can finalize arbitrary transfers without on-chain validation |
0xc973d09e51a20c9ab0214c439e4b34dbac52ad67
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d7-52ed-7231-975b-72409c137e98
|
|
high
|
codex |
Unprotected initializer allows takeover of uninitialized proxy/clone |
0x387a294a2b92387cf46714faa537f1f81d50c210
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d6-c7d2-72ca-99c8-428dc13e465f
|
|
low
|
codex |
Initializer grants ADMIN_ROLE to caller even when owner differs |
0x387a294a2b92387cf46714faa537f1f81d50c210
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d6-c7d2-72ca-99c8-428dc13e465f
|
|
high
|
codex |
Intervals claimed only incremented by 1 enables repeated over-claims |
0x6097a40e38fa1aeea072babfaadea1f513e970a8
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d6-b2a2-72f8-8ed2-aa2958ed78a5
|
|
medium
|
codex |
Whitelist signature lacks domain separation, enabling replay across contracts/chains |
0x6097a40e38fa1aeea072babfaadea1f513e970a8
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d6-b2a2-72f8-8ed2-aa2958ed78a5
|
|
low
|
codex |
Unchecked ERC20 transfer return values can desync accounting |
0x6097a40e38fa1aeea072babfaadea1f513e970a8
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d6-b2a2-72f8-8ed2-aa2958ed78a5
|
|
high
|
codex |
Spot Uniswap reserves used as price oracle enable manipulation of collateral and liquidations |
0xe3fef783783f97c7647c1f108d1c561e5ec13f92
|
$46,280.85 |
no
|
—
|
2 months ago
|
019be3d6-8551-7286-84a9-a94929610231
|
|
low
|
codex |
Unchecked return value from pool repay can leave debt unpaid while positions close |
0xe3fef783783f97c7647c1f108d1c561e5ec13f92
|
$46,280.85 |
no
|
—
|
2 months ago
|
019be3d6-8551-7286-84a9-a94929610231
|
|
medium
|
codex |
Computed external CALLs with possible ETH value transfer (access control unclear) |
0x5525bfd977249c60df28176ebe3230c157ac4825
|
$46,332.61 |
no
|
—
|
2 months ago
|
019be3d6-8547-735e-b929-04787b4987ad
|
|
low
|
codex |
Reentrancy surface from multiple external calls (guard not detected) |
0x5525bfd977249c60df28176ebe3230c157ac4825
|
$46,332.61 |
no
|
—
|
2 months ago
|
019be3d6-8547-735e-b929-04787b4987ad
|
|
low
|
codex |
External call return data not verified (heuristic) |
0x5525bfd977249c60df28176ebe3230c157ac4825
|
$46,332.61 |
no
|
—
|
2 months ago
|
019be3d6-8547-735e-b929-04787b4987ad
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0x331399c614ca67dee86733e5a2fba40dbb16827c
|
$46,414.03 |
no
|
—
|
2 months ago
|
019be3d6-853a-71aa-af62-82c512f810a9
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0x331399c614ca67dee86733e5a2fba40dbb16827c
|
$46,414.03 |
no
|
—
|
2 months ago
|
019be3d6-853a-71aa-af62-82c512f810a9
|
|
medium
|
codex |
Externally configured hook contract is called in core token flows (reentrancy/DoS risk) |
0x75ac19045e7b4b96f7840f8fe9e2e255093bd52f
|
$46,444.98 |
no
|
—
|
2 months ago
|
019be3d6-8530-72f9-bd6e-4ee75e5fcfb1
|
|
low
|
codex |
CALLCODE opcode present in runtime bytecode (likely metadata, but dangerous if reachable) |
0x75ac19045e7b4b96f7840f8fe9e2e255093bd52f
|
$46,444.98 |
no
|
—
|
2 months ago
|
019be3d6-8530-72f9-bd6e-4ee75e5fcfb1
|
|
high
|
codex |
Computed DELEGATECALL targets enable arbitrary code execution if attacker-influenced |
0x10314a9f673476f313a598778fea9cb694856500
|
$46,500.00 |
no
|
—
|
2 months ago
|
019be3d6-8525-715e-9ddd-0261e6dd9327
|
|
medium
|
codex |
Untrusted external CALLs with computed target/value (ETH transfer possible) |
0x10314a9f673476f313a598778fea9cb694856500
|
$46,500.00 |
no
|
—
|
2 months ago
|
019be3d6-8525-715e-9ddd-0261e6dd9327
|
|
medium
|
codex |
Computed CALL with ETH value may reach untrusted target |
0x2c11c5231db1e1feb5e842dbd1c169e5f0d315d4
|
$46,500.00 |
no
|
—
|
2 months ago
|
019be3d6-8519-73c1-9e7a-74e01936c865
|
|
medium
|
codex |
Computed external CALLs with potential value transfer |
0xac99380baa171f3a12d7504cf985535ad0bdb26b
|
$46,500.00 |
no
|
—
|
2 months ago
|
019be3d6-8505-704c-9fd9-dc628ad8eaa3
|
|
medium
|
codex |
External DELEGATECALL to fixed target gives that contract full control of this contract’s storage |
0xf3347c1feca81e9e42c263458ec8d6fea3662ea2
|
$46,500.00 |
no
|
—
|
2 months ago
|
019be3d6-84fb-701e-884c-bd21f4d3f54e
|
|
medium
|
codex |
Externally reachable CALL with computed target/value (possible arbitrary execution/ETH transfer) |
0xd9b20cfed69e76acae3fa1c2ee1faafafcb41f55
|
$46,500.01 |
no
|
—
|
2 months ago
|
019be3d6-84ee-7348-8933-35d695a39730
|
|
low
|
codex |
Return data not validated for low-level CALLs |
0xd9b20cfed69e76acae3fa1c2ee1faafafcb41f55
|
$46,500.01 |
no
|
—
|
2 months ago
|
019be3d6-84ee-7348-8933-35d695a39730
|
|
high
|
slither |
Reentrancy in Cn_Bank.Collect(uint256) (contracts/Contract.sol#10-19): |
0xd84d16fc96cc69a21199454ed615c8bc66fb4026
|
$46,503.83 |
no
|
—
|
2 months ago
|
019be3d6-84e5-71ba-9f6c-009acf5f51d8
|
|
high
|
codex |
Reentrancy in Collect allows draining more than balance |
0xd84d16fc96cc69a21199454ed615c8bc66fb4026
|
$46,503.83 |
no
|
—
|
2 months ago
|
019be3d6-84e5-71ba-9f6c-009acf5f51d8
|
|
high
|
slither |
Reentrancy in Wallet.confirm(bytes32) (contracts/Contract.sol#301-308): |
0x3792d288d9f0993971f23e4758acb719f285f6ef
|
$46,511.07 |
no
|
—
|
2 months ago
|
019be3d6-84db-708f-a189-cf52464f8961
|
|
high
|
slither |
Reentrancy in Wallet.execute(address,uint256,bytes) (contracts/Contract.sol#292-296): |
0x3792d288d9f0993971f23e4758acb719f285f6ef
|
$46,511.07 |
no
|
—
|
2 months ago
|
019be3d6-84db-708f-a189-cf52464f8961
|
|
low
|
codex |
Unchecked low-level call result drops failed transaction |
0x3792d288d9f0993971f23e4758acb719f285f6ef
|
$46,511.07 |
no
|
—
|
2 months ago
|
019be3d6-84db-708f-a189-cf52464f8961
|
|
medium
|
codex |
Computed DELEGATECALL target reachable (storage corruption risk if not strictly bounded) |
0x0cd5349e1909599f4445149a264699958a4fc962
|
$46,519.11 |
no
|
—
|
2 months ago
|
019be3d6-84d0-712a-a2d1-e4725f02a1d8
|
|
low
|
codex |
Low-level CALLs with computed target/value (possible reentrancy or fund diversion) |
0x0cd5349e1909599f4445149a264699958a4fc962
|
$46,519.11 |
no
|
—
|
2 months ago
|
019be3d6-84d0-712a-a2d1-e4725f02a1d8
|
|
critical
|
detector |
Untrusted DELEGATECALL target reachable |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
no
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
no
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
high
|
detector |
ETH value transfer possible |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
no
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
medium
|
cast |
DELEGATECALL present |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
info
|
cast |
Heavy CALL-family usage |
0x62c9e5e52351e02635f48072fa20c03bb650f787
|
$0.00 |
no
|
—
|
2 months ago
|
019be3d9-53a8-71a4-b1a8-306d54433492
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0x6b55e8a50db7ccc8f7bdb437ce03a32a47d221d5
|
$46,520.22 |
no
|
—
|
2 months ago
|
019be3d6-84c6-7301-beaa-694f27c9f1f3
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0x6b55e8a50db7ccc8f7bdb437ce03a32a47d221d5
|
$46,520.22 |
no
|
—
|
2 months ago
|
019be3d6-84c6-7301-beaa-694f27c9f1f3
|