|
medium
|
slither |
Reentrancy in UniswapV2Pair.swap(uint256,uint256,address,bytes) (contracts/Contract.sol#599-631): |
0xb3558f47fa914f7ec1da1a6f52ab41ee63e81301
|
$56,152.33 |
no
|
—
|
3 months ago
|
019bab3b-ac96-72a6-859a-d5ad1b767509
|
|
medium
|
slither |
Reentrancy in UniswapV2Pair.burn(address) (contracts/Contract.sol#569-598): |
0xb3558f47fa914f7ec1da1a6f52ab41ee63e81301
|
$56,152.33 |
no
|
—
|
3 months ago
|
019bab3b-ac96-72a6-859a-d5ad1b767509
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0x79db69ab1ed51261a9fdc3bf0e6db3fa48b8cc52
|
$56,153.66 |
no
|
—
|
3 months ago
|
019bab3b-ac8e-71df-a072-8dfd5e9573e8
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0x79db69ab1ed51261a9fdc3bf0e6db3fa48b8cc52
|
$56,153.66 |
no
|
—
|
3 months ago
|
019bab3b-ac8e-71df-a072-8dfd5e9573e8
|
|
high
|
codex |
DELEGATECALL to external target (proxy-like risk) |
0x06291eee038e94e8dec2b3bfb6e030c0b5615506
|
$56,236.72 |
no
|
—
|
3 months ago
|
019bab3b-ac85-70a7-83ce-dfd718c375d8
|
|
medium
|
codex |
Low-level CALLs with computed target/value and unknown return handling |
0x06291eee038e94e8dec2b3bfb6e030c0b5615506
|
$56,236.72 |
no
|
—
|
3 months ago
|
019bab3b-ac85-70a7-83ce-dfd718c375d8
|
|
medium
|
slither |
Reentrancy in LiquidityMining2.payout(address) (contracts/Contract.sol#1193-1221): |
0x7a9a0d2ae824ba57a5fe7dabaf7e6846021d4e8e
|
$56,251.15 |
no
|
—
|
3 months ago
|
019bab3b-ac7d-7233-9fb9-aff5ddce53e8
|
|
medium
|
slither |
Reentrancy in LiquidityMining2.stake(uint256,uint256,uint256) (contracts/Contract.sol#1105-1154): |
0x7a9a0d2ae824ba57a5fe7dabaf7e6846021d4e8e
|
$56,251.15 |
no
|
—
|
3 months ago
|
019bab3b-ac7d-7233-9fb9-aff5ddce53e8
|
|
medium
|
codex |
Rewards accrue during zero-stake periods, letting late stakers capture idle rewards |
0x7a9a0d2ae824ba57a5fe7dabaf7e6846021d4e8e
|
$56,251.15 |
no
|
—
|
3 months ago
|
019bab3b-ac7d-7233-9fb9-aff5ddce53e8
|
|
low
|
codex |
rescueTokens compares normalized stake totals against raw token balances |
0x7a9a0d2ae824ba57a5fe7dabaf7e6846021d4e8e
|
$56,251.15 |
no
|
—
|
3 months ago
|
019bab3b-ac7d-7233-9fb9-aff5ddce53e8
|
|
medium
|
codex |
Computed external CALLs with ETH value; potential arbitrary call/value transfers and reentrancy risk |
0x2cac6e4b11d6b58f6d3c1c9d5fe8faa89f60e5a2
|
$56,314.16 |
no
|
—
|
3 months ago
|
019bab3b-ac74-7341-b8b6-2be009b2500f
|
|
medium
|
codex |
Authorization uses tx.origin (phishable / bypassable via intermediary contracts) |
0x2cac6e4b11d6b58f6d3c1c9d5fe8faa89f60e5a2
|
$56,314.16 |
no
|
—
|
3 months ago
|
019bab3b-ac74-7341-b8b6-2be009b2500f
|
|
low
|
codex |
SELFDESTRUCT opcode present; reachability unclear |
0x2cac6e4b11d6b58f6d3c1c9d5fe8faa89f60e5a2
|
$56,314.16 |
no
|
—
|
3 months ago
|
019bab3b-ac74-7341-b8b6-2be009b2500f
|
|
high
|
codex |
Delegatecall to computed target enables arbitrary code execution if reachable |
0x95fe5961368664c3da8879d7542149ddf0738d82
|
$56,641.81 |
no
|
—
|
3 months ago
|
019bab3b-ac6c-7220-8780-0b3cf4eedfd4
|
|
low
|
codex |
Untrusted external calls during ERC1155 receiver hooks (potential reentrancy surface) |
0xa658542ca3265c00beb9a7b45a23503ed87c66c0
|
$56,652.50 |
no
|
—
|
3 months ago
|
019bab3b-ac62-70bf-bd48-3141cf1dd860
|
|
low
|
codex |
Low-level ETH sweep to caller uses SELFBALANCE and CALLER |
0xa658542ca3265c00beb9a7b45a23503ed87c66c0
|
$56,652.50 |
no
|
—
|
3 months ago
|
019bab3b-ac62-70bf-bd48-3141cf1dd860
|
|
high
|
codex |
Retired committee members remain authorized to process requests |
0xf2139f5c8afb8a4d64084efc5532830774742830
|
$56,780.96 |
no
|
—
|
3 months ago
|
019bab3b-ac5a-722f-b716-e6968b11ca70
|
|
medium
|
codex |
Oracle anomalies can bypass transfer limits due to unchecked price and fail-open handling |
0xf2139f5c8afb8a4d64084efc5532830774742830
|
$56,780.96 |
no
|
—
|
3 months ago
|
019bab3b-ac5a-722f-b716-e6968b11ca70
|
|
medium
|
codex |
USD transfer minimum is ignored when default minimum is smaller (often zero) |
0xf2139f5c8afb8a4d64084efc5532830774742830
|
$56,780.96 |
no
|
—
|
3 months ago
|
019bab3b-ac5a-722f-b716-e6968b11ca70
|
|
critical
|
detector |
Untrusted DELEGATECALL target reachable |
0x49643fc85fb1f25b6775ebbbdc69295d45105abc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-f2be-72f8-a06f-15a39da6a9c7
|
|
high
|
detector |
ETH value transfer possible |
0x49643fc85fb1f25b6775ebbbdc69295d45105abc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-f2be-72f8-a06f-15a39da6a9c7
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x49643fc85fb1f25b6775ebbbdc69295d45105abc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-f2be-72f8-a06f-15a39da6a9c7
|
|
medium
|
cast |
DELEGATECALL present |
0x49643fc85fb1f25b6775ebbbdc69295d45105abc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-f2be-72f8-a06f-15a39da6a9c7
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x49643fc85fb1f25b6775ebbbdc69295d45105abc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-f2be-72f8-a06f-15a39da6a9c7
|
|
high
|
slither |
Staking.withdraw(uint256) (contracts/Contract.sol#1300-1310) ignores return value by ABR.transfer(msg.sender,what) (contracts/Contract.sol#1309-1310) |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
high
|
slither |
Staking.deposit(uint256) (contracts/Contract.sol#1272-1300) ignores return value by ABR.transferFrom(msg.sender,address(this),_amount) (contracts/Contract.sol#1297-1300) |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
high
|
slither |
Bridge.removeToken(bytes4,bytes32,address) (contracts/Contract.sol#1620-1646) sends eth to arbitrary user |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
high
|
slither |
Reentrancy in Bridge.removeToken(bytes4,bytes32,address) (contracts/Contract.sol#1620-1646): |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
medium
|
codex |
Bridge accounting breaks with fee-on-transfer or rebasing tokens |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
medium
|
codex |
Unchecked ERC20 return values can mint unbacked xABR |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
low
|
codex |
FeeOracle can be manipulated via temporary xABR balances |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
low
|
codex |
ETH transfers use `transfer`, enabling recipient DoS |
0xd5d6b2f2d7a7506c49bb0cb6fb39a67f065d6fc4
|
$56,793.75 |
no
|
—
|
3 months ago
|
019bab3b-ac52-71c2-b78b-846cf73d1ca2
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xc164636803193c7ff196ca7334cfd7059a75d0f0
|
$56,812.96 |
no
|
—
|
3 months ago
|
019bab3b-ac47-71bb-aae2-99819cd0d5a7
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xc164636803193c7ff196ca7334cfd7059a75d0f0
|
$56,812.96 |
no
|
—
|
3 months ago
|
019bab3b-ac47-71bb-aae2-99819cd0d5a7
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xe76154de890a34a3af778f06b2af535a584aeb1e
|
$56,859.70 |
no
|
—
|
3 months ago
|
019bab3b-ac39-73b7-9a50-ae9e245f8806
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xe76154de890a34a3af778f06b2af535a584aeb1e
|
$56,859.70 |
no
|
—
|
3 months ago
|
019bab3b-ac39-73b7-9a50-ae9e245f8806
|
|
medium
|
codex |
Share pricing fully trusts provider rates without safeguards |
0x01ba69727e2860b37bc1a2bd56999c1afb4c15d8
|
$57,002.78 |
no
|
—
|
3 months ago
|
019bab3b-ac24-703a-981b-8dea6c2cb808
|
|
medium
|
codex |
Deposits assume full transfer amount, enabling share inflation with fee-on-transfer tokens |
0x01ba69727e2860b37bc1a2bd56999c1afb4c15d8
|
$57,002.78 |
no
|
—
|
3 months ago
|
019bab3b-ac24-703a-981b-8dea6c2cb808
|
|
medium
|
codex |
Mint path rounds down, allowing underpayment for shares |
0x01ba69727e2860b37bc1a2bd56999c1afb4c15d8
|
$57,002.78 |
no
|
—
|
3 months ago
|
019bab3b-ac24-703a-981b-8dea6c2cb808
|
|
high
|
detector |
Authorization based on tx.origin |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
high
|
detector |
Untrusted DELEGATECALL target reachable |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
medium
|
detector |
Untrusted CALL target/value reachable |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
medium
|
detector |
CREATE/CREATE2 reachable |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
medium
|
detector |
ETH value transfer possible |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
medium
|
cast |
DELEGATECALL present |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
low
|
cast |
Contract creation opcode present |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0xc1c5b18774d0282949331b719b5ea4a21cbc62c8
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-c746-7355-af08-a01c5cba9495
|
|
medium
|
codex |
Protocol swaps use manipulable TWAPs for `amountOutMinimum`, enabling adverse-rate swaps |
0xaa390a37006e22b5775a34f2147f81ebd6a63641
|
$57,045.65 |
no
|
—
|
3 months ago
|
019bab3b-ac16-71c8-994e-dc9bad3c06f9
|
|
medium
|
codex |
ETH fee calculation can be underpaid via manipulable Uniswap TWAP |
0xaa390a37006e22b5775a34f2147f81ebd6a63641
|
$57,045.65 |
no
|
—
|
3 months ago
|
019bab3b-ac16-71c8-994e-dc9bad3c06f9
|
|
high
|
slither |
Reentrancy in FetchInuDividendTracker.process(uint256) (contracts/FetchInuDividendTracker.sol#156-201): |
0x456fa3183d33497b290a3d24b98ddbc902ae1da5
|
$57,078.35 |
no
|
—
|
3 months ago
|
019bab3b-ac0d-70eb-9589-3835283d1f66
|