| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | slither | CrowdfundWithEditionsLogic.sendValue(address,uint256) (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsLogic.sol#165-177) sends eth to arbitrary user | no | — |
| high | slither | CrowdfundWithEditionsStorage.fundingCap (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsStorage.sol#42) is never initialized. It is used in: | no | — |
| high | slither | CrowdfundWithEditionsStorage.operatorPercent (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsStorage.sol#48) is never initialized. It is used in: | no | — |
| high | slither | CrowdfundWithEditionsStorage.treasuryConfig (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsStorage.sol#39) is never initialized. It is used in: | no | — |
| high | slither | CrowdfundWithEditionsStorage.feePercentage (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsStorage.sol#45) is never initialized. It is used in: | no | — |
| high | slither | CrowdfundWithEditionsStorage.operator (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsStorage.sol#33) is never initialized. It is used in: | no | — |
| high | slither | CrowdfundWithEditionsStorage.editions (contracts/producers/crowdfunds/crowdfund-with-editions/CrowdfundWithEditionsStorage.sol#58) is never initialized. It is used in: | no | — |
| high | detector | Untrusted CALL target/value reachable | no | no |
| high | detector | ETH value transfer possible | no | no |
| medium | codex | Anyone can trigger withdrawals at any time, breaking funding cap and redemption backing | no | — |
| low | codex | Reentrancy in _withdraw allows treasury to collect multiple fees | no | — |
| info | cast | Heavy EXTCODE*/BALANCE usage | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 019bb004-9839-71fb-bf53-cdb271c42b17 | complete | crit 0 high 0 | 12 | 3 months ago |