|
medium
|
codex |
Slashing can cause underflow and permanently block reward updates |
0x0dd5a35fe4cd65fe7928c7b923902b43d6ea29e7
|
$59,125.30 |
no
|
—
|
3 months ago
|
019bab3b-ab05-7055-bef7-363c9c09e395
|
|
low
|
codex |
Division by zero when no VIRTUE is staked can revert sales/reward distribution |
0x0dd5a35fe4cd65fe7928c7b923902b43d6ea29e7
|
$59,125.30 |
no
|
—
|
3 months ago
|
019bab3b-ab05-7055-bef7-363c9c09e395
|
|
medium
|
codex |
Trading lock bypass via direct capital withdrawal |
0x31a0c9e9506ce7f3749aeebd20397618a2879788
|
$59,142.36 |
no
|
—
|
3 months ago
|
019bab3b-aafe-72b1-9cd0-b829a8b102dc
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0xb0d6eed90f8e497b867f557c44a49c8c81fa0a5d
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-acf0-7088-b150-fa883a5349a3
|
|
high
|
detector |
ETH value transfer possible |
0xb0d6eed90f8e497b867f557c44a49c8c81fa0a5d
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-acf0-7088-b150-fa883a5349a3
|
|
high
|
codex |
Unregistered address can execute BNFT deposit flow |
0x00c452affee3a17d9cecc1bcd2b8d5c7635c4cb9
|
$59,182.72 |
no
|
—
|
3 months ago
|
019bab3b-aaee-7307-8a62-f0c903f3c8f8
|
|
low
|
codex |
Division-by-zero DoS in fund source allocation |
0x00c452affee3a17d9cecc1bcd2b8d5c7635c4cb9
|
$59,182.72 |
no
|
—
|
3 months ago
|
019bab3b-aaee-7307-8a62-f0c903f3c8f8
|
|
critical
|
detector |
Untrusted DELEGATECALL target reachable |
0x68fe80c6e97e0c8613e2fed344358c6635ba5366
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-a6af-702e-81df-bc4bc14e96dc
|
|
high
|
detector |
ETH value transfer possible |
0x68fe80c6e97e0c8613e2fed344358c6635ba5366
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-a6af-702e-81df-bc4bc14e96dc
|
|
high
|
detector |
Untrusted CALL target/value reachable |
0x68fe80c6e97e0c8613e2fed344358c6635ba5366
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-a6af-702e-81df-bc4bc14e96dc
|
|
medium
|
cast |
DELEGATECALL present |
0x68fe80c6e97e0c8613e2fed344358c6635ba5366
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-a6af-702e-81df-bc4bc14e96dc
|
|
low
|
codex |
Computed external CALLs with value and no detected guards (conditional reentrancy/ETH loss risk) |
0xd838f9c9792bf8398e1f5fbfbd3b43c5a86445aa
|
$59,194.58 |
no
|
—
|
3 months ago
|
019bab3b-aae7-7376-9148-d1bfc8a66858
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0x86347ace0fbf4e408c0183622e9c063ca5a2258a
|
$59,267.06 |
no
|
—
|
3 months ago
|
019bab3b-aadf-7110-b431-624ef949f9a0
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0x86347ace0fbf4e408c0183622e9c063ca5a2258a
|
$59,267.06 |
no
|
—
|
3 months ago
|
019bab3b-aadf-7110-b431-624ef949f9a0
|
|
high
|
slither |
Reentrancy in CoinToken._transfer(address,address,uint256) (contracts/Contract.sol#634-671): |
0xf20bc3b10b95cde1368a2f4219a63ed3fd8b9089
|
$59,327.00 |
no
|
—
|
3 months ago
|
019bab3b-aacf-703b-9022-3246f6b562b2
|
|
high
|
codex |
Owner can arbitrarily change fees and limits, enabling honeypot behavior |
0xf20bc3b10b95cde1368a2f4219a63ed3fd8b9089
|
$59,327.00 |
no
|
—
|
3 months ago
|
019bab3b-aacf-703b-9022-3246f6b562b2
|
|
medium
|
codex |
Fee parameter underflow/division by zero can brick sell-side swaps |
0xf20bc3b10b95cde1368a2f4219a63ed3fd8b9089
|
$59,327.00 |
no
|
—
|
3 months ago
|
019bab3b-aacf-703b-9022-3246f6b562b2
|
|
low
|
codex |
ETH payouts use .transfer and can revert if recipient is a contract |
0xf20bc3b10b95cde1368a2f4219a63ed3fd8b9089
|
$59,327.00 |
no
|
—
|
3 months ago
|
019bab3b-aacf-703b-9022-3246f6b562b2
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0xcab7d1c2777488b85ed301c3944cdbd6bb30bf72
|
$59,377.25 |
no
|
—
|
3 months ago
|
019bab3b-aac7-723f-a6c5-efaaa30c5b49
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0xcab7d1c2777488b85ed301c3944cdbd6bb30bf72
|
$59,377.25 |
no
|
—
|
3 months ago
|
019bab3b-aac7-723f-a6c5-efaaa30c5b49
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.collectProtocol(address,uint128,uint128) (contracts/UniswapV3Pool.sol#848-868): |
0x479e82b60f5885a3569d618d027ef1ac2020ee82
|
$59,396.93 |
no
|
—
|
3 months ago
|
019bab3b-aabf-7386-8a26-42d26db0fad8
|
|
medium
|
slither |
Reentrancy in UniswapV3Pool.swap(address,bool,int256,uint160,bytes) (contracts/UniswapV3Pool.sol#596-788): |
0x479e82b60f5885a3569d618d027ef1ac2020ee82
|
$59,396.93 |
no
|
—
|
3 months ago
|
019bab3b-aabf-7386-8a26-42d26db0fad8
|
|
medium
|
codex |
SELFDESTRUCT reachable with unclear access control |
0xd1901bd2063d2c8f649bf31b6df6d0f853a6bda3
|
$59,416.92 |
no
|
—
|
3 months ago
|
019bab3b-aab8-7367-9218-8babaed6813f
|
|
low
|
codex |
Computed CALLs with value and unchecked returndata |
0xd1901bd2063d2c8f649bf31b6df6d0f853a6bda3
|
$59,416.92 |
no
|
—
|
3 months ago
|
019bab3b-aab8-7367-9218-8babaed6813f
|
|
low
|
codex |
CREATE/CREATE2 opcodes reachable; deployment control unclear |
0xd1901bd2063d2c8f649bf31b6df6d0f853a6bda3
|
$59,416.92 |
no
|
—
|
3 months ago
|
019bab3b-aab8-7367-9218-8babaed6813f
|
|
medium
|
codex |
Low-level CALLs with computed target/value lack visible authorization |
0xfdffb38544dc145795e9ea2b82fc3dcb3c72e59c
|
$59,434.01 |
no
|
—
|
3 months ago
|
019bab3b-aaaf-72e1-b91d-acd00fc28602
|
|
low
|
codex |
External CALLs combined with storage writes; no reentrancy guard detected |
0xfdffb38544dc145795e9ea2b82fc3dcb3c72e59c
|
$59,434.01 |
no
|
—
|
3 months ago
|
019bab3b-aaaf-72e1-b91d-acd00fc28602
|
|
low
|
codex |
Low-level token transfer call does not appear to validate return data |
0xfdffb38544dc145795e9ea2b82fc3dcb3c72e59c
|
$59,434.01 |
no
|
—
|
3 months ago
|
019bab3b-aaaf-72e1-b91d-acd00fc28602
|
|
medium
|
slither |
Reentrancy in NFTEntry.userMint(uint256,uint256,uint256,uint256,uint256,bytes) (contracts/Contract.sol#2124-2152): |
0x69bcb93d13d1063335269e8602b009485abd3e87
|
$59,479.28 |
no
|
—
|
3 months ago
|
019bab3b-aaa7-70e2-8f3a-b33ac294d2ca
|
|
high
|
codex |
Signed mint does not bind payment amount, enabling free or underpriced mints |
0x69bcb93d13d1063335269e8602b009485abd3e87
|
$59,479.28 |
no
|
—
|
3 months ago
|
019bab3b-aaa7-70e2-8f3a-b33ac294d2ca
|
|
medium
|
codex |
Signature expiry and domain separation are ineffective |
0x69bcb93d13d1063335269e8602b009485abd3e87
|
$59,479.28 |
no
|
—
|
3 months ago
|
019bab3b-aaa7-70e2-8f3a-b33ac294d2ca
|
|
medium
|
codex |
Reentrancy in stake via token callback can double-count pending rewards |
0x377e168af6a06075423aede50856de177efaac3e
|
$59,515.65 |
no
|
—
|
3 months ago
|
019bab3b-aaa0-7151-a374-c3fe4af4842d
|
|
high
|
detector |
Authorization based on tx.origin |
0x4b14ddc1b1b4bb3a89d574c2708c609d4e192730
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-509f-7157-9791-77edf365d19b
|
|
medium
|
detector |
ETH value transfer possible |
0x4b14ddc1b1b4bb3a89d574c2708c609d4e192730
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-509f-7157-9791-77edf365d19b
|
|
medium
|
detector |
Untrusted CALL target/value reachable |
0x4b14ddc1b1b4bb3a89d574c2708c609d4e192730
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-509f-7157-9791-77edf365d19b
|
|
medium
|
detector |
CREATE/CREATE2 reachable |
0x4b14ddc1b1b4bb3a89d574c2708c609d4e192730
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-509f-7157-9791-77edf365d19b
|
|
low
|
cast |
Contract creation opcode present |
0x4b14ddc1b1b4bb3a89d574c2708c609d4e192730
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-509f-7157-9791-77edf365d19b
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x4b14ddc1b1b4bb3a89d574c2708c609d4e192730
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-509f-7157-9791-77edf365d19b
|
|
low
|
codex |
Validator-manager signature can be replayed for registerValidators, allowing duplicate validator deposits |
0xb36fc5e542cb4fc562a624912f55da2758998113
|
$59,728.43 |
no
|
—
|
3 months ago
|
019bab3b-aa91-70e2-a7d3-704d770ca089
|
|
high
|
detector |
Authorization based on tx.origin |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
high
|
detector |
Untrusted DELEGATECALL target reachable |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
medium
|
detector |
CREATE/CREATE2 reachable |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
medium
|
detector |
Untrusted CALL target/value reachable |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
medium
|
detector |
ETH value transfer possible |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
no
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
medium
|
cast |
DELEGATECALL present |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
low
|
cast |
Contract creation opcode present |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
info
|
cast |
Heavy CALL-family usage |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
info
|
cast |
Heavy EXTCODE*/BALANCE usage |
0x927a83c679a5e1a6435d6bfaef7f20d4db23e2cc
|
$0.00 |
no
|
—
|
3 months ago
|
019bab3c-4a33-7098-9325-ebfbff005bf9
|
|
low
|
codex |
Unchecked ERC20 transfers can silently fail |
0x5ad6211cd3fde39a9cecb5df6f380b8263d1e277
|
$59,740.59 |
no
|
—
|
3 months ago
|
019bab3b-aa89-730a-8b3c-b49db1fb7914
|
|
info
|
codex |
wrapEth ignores WETH deposit failure |
0x5ad6211cd3fde39a9cecb5df6f380b8263d1e277
|
$59,740.59 |
no
|
—
|
3 months ago
|
019bab3b-aa89-730a-8b3c-b49db1fb7914
|