|
low
|
cast |
Contract creation opcode present |
0xd9537f37fb0c7c6219b1d929688d4553d7735fdc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-3c25-70db-987e-c40123e1a189
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0xd9537f37fb0c7c6219b1d929688d4553d7735fdc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-3c25-70db-987e-c40123e1a189
|
|
info
|
cast |
Heavy CALL-family usage |
0xd9537f37fb0c7c6219b1d929688d4553d7735fdc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-3c25-70db-987e-c40123e1a189
|
|
high
|
slither |
Plague.feeWithdraw() (contracts/Contract.sol#553-571) sends eth to arbitrary user |
0xf317a365cfef0aa4357abd057048808a1d430402
|
$58,424.26 |
no
|
—
|
3 months ago
|
019bab3b-ab84-72af-bef3-c28e12418fef
|
|
low
|
codex |
Game timing and price logic depend on block.timestamp manipulation |
0xf317a365cfef0aa4357abd057048808a1d430402
|
$58,424.26 |
no
|
—
|
3 months ago
|
019bab3b-ab84-72af-bef3-c28e12418fef
|
|
low
|
codex |
`onlyHuman` contract check is bypassable via constructor calls |
0xf317a365cfef0aa4357abd057048808a1d430402
|
$58,424.26 |
no
|
—
|
3 months ago
|
019bab3b-ab84-72af-bef3-c28e12418fef
|
|
medium
|
codex |
Oracle randomness accepted without proof verification |
0x1e2fbe6be9eb39fc894d38be976111f332172d83
|
$58,500.43 |
no
|
—
|
3 months ago
|
019bab3b-ab7c-7102-8fd8-1dd8c9e21d98
|
|
medium
|
codex |
Reentrancy window when paying winners if safeGas is raised |
0x1e2fbe6be9eb39fc894d38be976111f332172d83
|
$58,500.43 |
no
|
—
|
3 months ago
|
019bab3b-ab7c-7102-8fd8-1dd8c9e21d98
|
|
low
|
codex |
Failed Oraclize query can lock user funds in an unresolved bet |
0x1e2fbe6be9eb39fc894d38be976111f332172d83
|
$58,500.43 |
no
|
—
|
3 months ago
|
019bab3b-ab7c-7102-8fd8-1dd8c9e21d98
|
|
medium
|
codex |
tx.origin used in sensitive logic (heuristic) |
0x2d83ff1cb1c79c68fe530d35f439a92a645faded
|
$58,548.25 |
no
|
—
|
3 months ago
|
019bab3b-ab74-7343-a3d1-557498378979
|
|
low
|
codex |
Low-level external CALLs with computed target/value and no return-data validation |
0x2d83ff1cb1c79c68fe530d35f439a92a645faded
|
$58,548.25 |
no
|
—
|
3 months ago
|
019bab3b-ab74-7343-a3d1-557498378979
|
|
critical
|
detector |
Untrusted DELEGATECALL target reachable |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
high
|
detector |
ETH value transfer possible |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
medium
|
detector |
CREATE/CREATE2 reachable |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
medium
|
cast |
DELEGATECALL present |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
low
|
cast |
Contract creation opcode present |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x75161367fcac81482706d119ceedf8ef9a26fb8b
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-2204-73f2-9818-d5b32a5fa050
|
|
high
|
codex |
Reentrancy in sendPayment enables multiple payouts |
0xde5d4949f445650325c7c8739610c3a979c7a6db
|
$58,651.07 |
no
|
—
|
3 months ago
|
019bab3b-ab66-71c2-bd2e-5152da730c58
|
|
high
|
codex |
Claim mints tokenId 0 for every NFT, causing claim DoS |
0xde5d4949f445650325c7c8739610c3a979c7a6db
|
$58,651.07 |
no
|
—
|
3 months ago
|
019bab3b-ab66-71c2-bd2e-5152da730c58
|
|
low
|
codex |
Tie-breaker randomness is miner-influenced |
0xde5d4949f445650325c7c8739610c3a979c7a6db
|
$58,651.07 |
no
|
—
|
3 months ago
|
019bab3b-ab66-71c2-bd2e-5152da730c58
|
|
low
|
codex |
Ownable constructor not executed in proxy deployments, potentially bricking initialization |
0x77e034c8a1392d99a2c776a6c1593866fee36a33
|
$58,741.61 |
no
|
—
|
3 months ago
|
019bab3b-ab5f-70f2-8756-7b17d7fdd28f
|
|
medium
|
detector |
SELFDESTRUCT reachable |
0x5018cc0d628fb322b2a040cfcd269a36c60b1538
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-0c7e-71f2-bf8e-4275a4cf132f
|
|
medium
|
detector |
ETH value transfer possible |
0x5018cc0d628fb322b2a040cfcd269a36c60b1538
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-0c7e-71f2-bf8e-4275a4cf132f
|
|
medium
|
detector |
Untrusted CALL target/value reachable |
0x5018cc0d628fb322b2a040cfcd269a36c60b1538
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3d-0c7e-71f2-bf8e-4275a4cf132f
|
|
high
|
cast |
SELFDESTRUCT present |
0x5018cc0d628fb322b2a040cfcd269a36c60b1538
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3d-0c7e-71f2-bf8e-4275a4cf132f
|
|
critical
|
codex |
Unprotected network initialization lets attacker set critical contract dependencies |
0xf211128cc6d925a3a328647cf78b322b51429c53
|
$58,771.78 |
no
|
—
|
3 months ago
|
019bab3b-ab50-73ed-9109-2fa3a622bb57
|
|
medium
|
codex |
External call before state updates enables reentrancy/price manipulation |
0xf211128cc6d925a3a328647cf78b322b51429c53
|
$58,771.78 |
no
|
—
|
3 months ago
|
019bab3b-ab50-73ed-9109-2fa3a622bb57
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xb055103b7633b61518cd806d95beeb2d4cd217e7
|
$58,823.16 |
no
|
—
|
3 months ago
|
019bab3b-ab48-71f5-a665-652242e33bba
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xb055103b7633b61518cd806d95beeb2d4cd217e7
|
$58,823.16 |
no
|
—
|
3 months ago
|
019bab3b-ab48-71f5-a665-652242e33bba
|
|
medium
|
codex |
Computed CALL targets/values may allow arbitrary external calls and ETH transfers if user-controlled |
0x705ec547b17ff8c4a2996f47fdfc399604163606
|
$58,826.95 |
no
|
—
|
3 months ago
|
019bab3b-ab41-7206-bacf-aa21d1411cf4
|
|
low
|
codex |
Implementation contract can be initialized directly (missing _disableInitializers) |
0x764737fb03f2443798eb317677d253ff226b97a9
|
$58,849.00 |
no
|
—
|
3 months ago
|
019bab3b-ab39-73a1-800d-3ee1abd6ba0d
|
|
high
|
detector |
Authorization based on tx.origin |
0x5e1e6dcf05fb49568aa66f40b9e3834c86008c8f
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-e9f9-72ab-84cf-abd0852573bf
|
|
medium
|
detector |
ETH value transfer possible |
0x5e1e6dcf05fb49568aa66f40b9e3834c86008c8f
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-e9f9-72ab-84cf-abd0852573bf
|
|
medium
|
detector |
Untrusted CALL target/value reachable |
0x5e1e6dcf05fb49568aa66f40b9e3834c86008c8f
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-e9f9-72ab-84cf-abd0852573bf
|
|
high
|
detector |
ETH value transfer possible |
0x24aa958c90b7973dc16c63c9992f69e1767377ae
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-ddda-7134-85ec-e9007b0ed1a7
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x24aa958c90b7973dc16c63c9992f69e1767377ae
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-ddda-7134-85ec-e9007b0ed1a7
|
|
medium
|
detector |
CREATE/CREATE2 reachable |
0x24aa958c90b7973dc16c63c9992f69e1767377ae
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-ddda-7134-85ec-e9007b0ed1a7
|
|
low
|
cast |
Contract creation opcode present |
0x24aa958c90b7973dc16c63c9992f69e1767377ae
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-ddda-7134-85ec-e9007b0ed1a7
|
|
info
|
cast |
Heavy CALL-family usage |
0x24aa958c90b7973dc16c63c9992f69e1767377ae
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-ddda-7134-85ec-e9007b0ed1a7
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x24aa958c90b7973dc16c63c9992f69e1767377ae
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-ddda-7134-85ec-e9007b0ed1a7
|
|
medium
|
codex |
CALLCODE usage with computed target/value |
0xcf7cdbd3de63764f6724f55f1de79a7054085eb9
|
$58,962.00 |
no
|
—
|
3 months ago
|
019bab3b-ab1b-7086-bbe8-d2c9031cd737
|
|
medium
|
codex |
tx.origin used in authorization path (phishing-prone access control) |
0xcf7cdbd3de63764f6724f55f1de79a7054085eb9
|
$58,962.00 |
no
|
—
|
3 months ago
|
019bab3b-ab1b-7086-bbe8-d2c9031cd737
|
|
low
|
codex |
Multiple external CALLs to computed targets/values (possible untrusted-call surface) |
0xcf7cdbd3de63764f6724f55f1de79a7054085eb9
|
$58,962.00 |
no
|
—
|
3 months ago
|
019bab3b-ab1b-7086-bbe8-d2c9031cd737
|
|
low
|
codex |
Delegatecall to upgradeable implementation slot allows arbitrary logic execution if upgrade authority is compromised |
0xc120c7db0804ae3abeb1d5f9c9c70402347b4685
|
$58,985.68 |
no
|
—
|
3 months ago
|
019bab3b-ab13-7280-88f3-49b837f879fe
|
|
high
|
detector |
Untrusted DELEGATECALL target reachable |
0x3463c6572bf1ea4c719fc229bd0d4956b0585a2c
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-cabb-72fc-a916-554f86904ec9
|
|
medium
|
cast |
DELEGATECALL present |
0x3463c6572bf1ea4c719fc229bd0d4956b0585a2c
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-cabb-72fc-a916-554f86904ec9
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x3463c6572bf1ea4c719fc229bd0d4956b0585a2c
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-cabb-72fc-a916-554f86904ec9
|
|
medium
|
codex |
Centralized, unbounded price oracle can arbitrarily change token pricing |
0xb3b33f59174f2ef62167770e4c9cabaa3879eb5d
|
$59,091.10 |
no
|
—
|
3 months ago
|
019bab3b-ab0b-7271-88f2-a566c8ee7df8
|
|
high
|
codex |
Reentrancy enables double-withdraw of staked VIRTUE |
0x0dd5a35fe4cd65fe7928c7b923902b43d6ea29e7
|
$59,125.30 |
no
|
—
|
3 months ago
|
019bab3b-ab05-7055-bef7-363c9c09e395
|