| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | detector | Untrusted CALL target/value reachable | yes | yes |
| high | detector | ETH value transfer possible | yes | yes |
| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | slither | WithdrawContract.doPayment(uint256,address,ERC20,uint256) (contracts/Contract.sol#471-477) sends eth to arbitrary user | no | — |
| high | slither | Reentrancy in WithdrawContract.withdraw() (contracts/Contract.sol#357-388): | no | — |
| high | slither | Escapable.escapeHatch(address) (contracts/Contract.sol#171-185) ignores return value by token.transfer(escapeHatchDestination,balance) (contracts/Contract.sol#181-182) | no | — |
| info | cast | Heavy EXTCODE*/BALANCE usage | no | — |
| info | cast | Heavy CALL-family usage | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 3ad87264-34e2-456a-9447-a6281f215a75 | failed | crit 0 high 2 | 7 | 3 months ago |
| 019b477e-ab20-71e3-9b1a-b03a6b26e931 | complete | crit 0 high 2 | 5 | 3 months ago |
| 019b3844-8af0-7158-a9c6-853d42b58b09 | complete | crit 0 high 2 | 2 | 3 months ago |