|
info
|
cast |
Heavy CALL-family usage |
0x6317c5e82a06e1d8bf200d21f4510ac2c038ac81
|
$51,924.84 |
no
|
—
|
3 months ago
|
019bb490-f308-7066-838c-35487503581e
|
|
high
|
detector |
ETH value transfer possible |
0x874f903003dec4639e22cbebff6e8295c80842a7
|
$51,978.66 |
no
|
no
|
3 months ago
|
019bb490-f2ec-7090-ab32-08f4848ec47a
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x874f903003dec4639e22cbebff6e8295c80842a7
|
$51,978.66 |
no
|
no
|
3 months ago
|
019bb490-f2ec-7090-ab32-08f4848ec47a
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x874f903003dec4639e22cbebff6e8295c80842a7
|
$51,978.66 |
no
|
—
|
3 months ago
|
019bb490-f2ec-7090-ab32-08f4848ec47a
|
|
medium
|
codex |
Claim data not bound to Merkle‑proven entity UUID allows cross‑entity claiming |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
—
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
medium
|
codex |
Claim data not bound to merkle-leaf entityUUID |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
—
|
3 months ago
|
019bb377-84c2-701a-9244-2bb4af000d2a
|
|
low
|
codex |
Replayable claim and carry withdrawal signatures (no nonce/used tracking) |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
—
|
3 months ago
|
019bb377-84c2-701a-9244-2bb4af000d2a
|
|
high
|
codex |
Computed DELEGATECALL target reachable (potential arbitrary code execution) |
0x55ec809027ce7b71500561f24ed318424b90fa79
|
$52,112.70 |
no
|
—
|
3 months ago
|
019bb377-69f9-704e-b3a5-3d5c116c864f
|
|
medium
|
codex |
Computed CALL target/value with ETH transfer possible |
0x55ec809027ce7b71500561f24ed318424b90fa79
|
$52,112.70 |
no
|
—
|
3 months ago
|
019bb377-69f9-704e-b3a5-3d5c116c864f
|
|
medium
|
codex |
SELFDESTRUCT reachable (beneficiary is CALLER) |
0x55ec809027ce7b71500561f24ed318424b90fa79
|
$52,112.70 |
no
|
—
|
3 months ago
|
019bb377-69f9-704e-b3a5-3d5c116c864f
|
|
low
|
codex |
Unchecked low-level call results can desync accounting and clear pending txs |
0x0c2665b200de022b98bf77492eb1dbea99c80e89
|
$52,165.97 |
no
|
—
|
3 months ago
|
019bb377-69ea-706f-8a9f-4e6b23cf77a4
|
|
high
|
slither |
LILPEPE.removeStuckToken(address,address,uint256) (contracts/Contract.sol#236-242) ignores return value by IERC20(_token).transfer(_receiver,_amount) (contracts/Contract.sol#242) |
0xddc2cbf96836f55ca40b819078f3ecbf1b270315
|
$52,168.50 |
no
|
—
|
3 months ago
|
019bb377-69e4-7107-8451-a61f773bc03a
|
|
low
|
codex |
Unchecked return value when rescuing ERC20 tokens |
0xddc2cbf96836f55ca40b819078f3ecbf1b270315
|
$52,168.50 |
no
|
—
|
3 months ago
|
019bb377-69e4-7107-8451-a61f773bc03a
|
|
low
|
codex |
Computed-target CALLs with possible ETH value and unknown return checks |
0xd1538a9d69801e57c937f3c64d8c4f57d2967257
|
$52,224.56 |
no
|
—
|
3 months ago
|
019bb377-69dc-7301-af57-e1e5c595dd03
|
|
high
|
codex |
Minter can be set by any address once, enabling unauthorized mint/reset |
0xc6b330df38d6ef288c953f1f2835723531073ce2
|
$52,230.71 |
no
|
—
|
3 months ago
|
019bb377-69d5-7349-915e-9672d06739b0
|
|
medium
|
codex |
Unchecked multiplication/division in trade and volume calculations can overflow |
0xc6b330df38d6ef288c953f1f2835723531073ce2
|
$52,230.71 |
no
|
—
|
3 months ago
|
019bb377-69d5-7349-915e-9672d06739b0
|
|
medium
|
codex |
Order signatures lack proper domain separation and user binding in hash |
0xc6b330df38d6ef288c953f1f2835723531073ce2
|
$52,230.71 |
no
|
—
|
3 months ago
|
019bb377-69d5-7349-915e-9672d06739b0
|
|
low
|
codex |
ERC20 approve race condition allows double-spend of allowance |
0xc6b330df38d6ef288c953f1f2835723531073ce2
|
$52,230.71 |
no
|
—
|
3 months ago
|
019bb377-69d5-7349-915e-9672d06739b0
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xbe7f576c55cb28faafd7471561b95f28c27915f4
|
$52,266.19 |
no
|
—
|
3 months ago
|
019bb377-69ce-70ea-be07-50ae91bf325b
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xbe7f576c55cb28faafd7471561b95f28c27915f4
|
$52,266.19 |
no
|
—
|
3 months ago
|
019bb377-69ce-70ea-be07-50ae91bf325b
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xd959e947fe87f43a8c54da5241f4e8becd027798
|
$52,279.65 |
no
|
—
|
3 months ago
|
019bb377-69c8-7109-add2-d8c3a44ecb44
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xd959e947fe87f43a8c54da5241f4e8becd027798
|
$52,279.65 |
no
|
—
|
3 months ago
|
019bb377-69c8-7109-add2-d8c3a44ecb44
|
|
medium
|
codex |
Claim accounting can be bypassed because claimData.entityUUID is not tied to the merkle leaf |
0xe44fc87cb2a6de79daef05008e42d18591b32e50
|
$52,319.75 |
no
|
—
|
3 months ago
|
019bb377-69c2-728f-a283-fa65e62ac929
|
|
low
|
codex |
Claim and carry signatures are replayable (no nonce/unique-use tracking) |
0xe44fc87cb2a6de79daef05008e42d18591b32e50
|
$52,319.75 |
no
|
—
|
3 months ago
|
019bb377-69c2-728f-a283-fa65e62ac929
|
|
critical
|
detector |
Untrusted DELEGATECALL target reachable |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
no
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
no
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
high
|
detector |
ETH value transfer possible |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
no
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
medium
|
detector |
CREATE/CREATE2 reachable |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
no
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
medium
|
cast |
DELEGATECALL present |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
—
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
low
|
cast |
Contract creation opcode present |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
—
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
—
|
3 months ago
|
019bb377-cb21-707f-bec4-277fb6e7ab46
|
|
high
|
codex |
Owner can set arbitrary fees and redirect fee wallets, enabling confiscatory transfers or trading freeze |
0x6adb2e268de2aa1abf6578e4a8119b960e02928f
|
$52,612.39 |
no
|
—
|
3 months ago
|
019bb377-69ba-721a-a2da-33713b7e41bf
|
|
medium
|
codex |
Owner-controlled blacklist can freeze user funds or halt trading |
0x6adb2e268de2aa1abf6578e4a8119b960e02928f
|
$52,612.39 |
no
|
—
|
3 months ago
|
019bb377-69ba-721a-a2da-33713b7e41bf
|
|
medium
|
codex |
swapAndLiquify can divide by zero and brick transfers when liquidity/marketing/dev fees are zero |
0x6adb2e268de2aa1abf6578e4a8119b960e02928f
|
$52,612.39 |
no
|
—
|
3 months ago
|
019bb377-69ba-721a-a2da-33713b7e41bf
|
|
low
|
codex |
Zero-slippage swap exposes internal swaps to sandwich/price manipulation |
0x6adb2e268de2aa1abf6578e4a8119b960e02928f
|
$52,612.39 |
no
|
—
|
3 months ago
|
019bb377-69ba-721a-a2da-33713b7e41bf
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0x0df7d88e55a3840a72e2b8bf77b27b119fbb200a
|
$52,682.44 |
no
|
—
|
3 months ago
|
019bb377-69b3-727f-b2b0-3bff77066c0b
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0x0df7d88e55a3840a72e2b8bf77b27b119fbb200a
|
$52,682.44 |
no
|
—
|
3 months ago
|
019bb377-69b3-727f-b2b0-3bff77066c0b
|
|
medium
|
codex |
Computed external CALLs may allow arbitrary calls/ETH transfer if parameters are user-controlled |
0x58f771ce4c4238cf989f086b2b0619393bdcef25
|
$52,789.25 |
no
|
—
|
3 months ago
|
019bb377-69ac-70bd-82fb-7affe671c9e7
|
|
medium
|
codex |
External CALLs occur before state updates (reentrancy window) |
0x5087fecec9b7386d1f2417fd779e1fd9bf509466
|
$52,824.00 |
no
|
—
|
3 months ago
|
019bb377-69a4-71cb-9ad1-0ec87c6b314a
|
|
low
|
codex |
ERC20 low-level CALLs do not validate return data |
0x5087fecec9b7386d1f2417fd779e1fd9bf509466
|
$52,824.00 |
no
|
—
|
3 months ago
|
019bb377-69a4-71cb-9ad1-0ec87c6b314a
|
|
medium
|
codex |
tx.origin used in guard logic (phishing-prone if used for auth) |
0xeeee96017550c817643bb0e85ebebc512e7a27ba
|
$52,841.79 |
no
|
—
|
3 months ago
|
019bb377-699e-73c4-bcd1-6c9ed4a4ebb9
|
|
medium
|
codex |
CALLCODE to computed target allows execution in caller storage |
0xeeee96017550c817643bb0e85ebebc512e7a27ba
|
$52,841.79 |
no
|
—
|
3 months ago
|
019bb377-699e-73c4-bcd1-6c9ed4a4ebb9
|
|
low
|
codex |
CREATE2 opcode reachable (factory capability) |
0xeeee96017550c817643bb0e85ebebc512e7a27ba
|
$52,841.79 |
no
|
—
|
3 months ago
|
019bb377-699e-73c4-bcd1-6c9ed4a4ebb9
|
|
low
|
codex |
Value-carrying CALLs to computed targets (untrusted-call risk, target uncertainty) |
0xeeee96017550c817643bb0e85ebebc512e7a27ba
|
$52,841.79 |
no
|
—
|
3 months ago
|
019bb377-699e-73c4-bcd1-6c9ed4a4ebb9
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xfe298bc90b82ea28033b054d6417d0368a678da3
|
$52,916.16 |
no
|
—
|
3 months ago
|
019bb377-6996-7353-8b01-f955dd69780d
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xfe298bc90b82ea28033b054d6417d0368a678da3
|
$52,916.16 |
no
|
—
|
3 months ago
|
019bb377-6996-7353-8b01-f955dd69780d
|
|
low
|
codex |
Low-level CALL with computed target/value may allow unintended external calls or ETH transfers |
0xf9742810d596769d6cb54799eb1e2ccda03aeb9c
|
$53,138.26 |
no
|
—
|
3 months ago
|
019bb377-698f-73e1-ada8-09688a3a56e6
|
|
medium
|
codex |
Computed-target CALLs with possible ETH value transfer |
0xee895136f60984ad428830eb622f9e1f91a13a45
|
$53,151.25 |
no
|
—
|
3 months ago
|
019bb377-6988-7237-b1cc-14a9ae159ea2
|
|
high
|
codex |
ClaimData entityUUID not bound to merkle leaf allows cross-entity claims and carry miscalculation |
0x1a170e3bbc7d930677bb7a77f9979032fefebb25
|
$53,269.93 |
no
|
—
|
3 months ago
|
019bb377-6981-7258-b853-2ed456496df7
|
|
critical
|
detector |
Untrusted DELEGATECALL target reachable |
0x7d3e713f1160a21d8251749e30e62ff12d27d6f2
|
$0.00 |
no
|
no
|
3 months ago
|
019bb377-84c2-701a-9244-2bb4af000d2a
|