| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | slither | Reentrancy in DividendPayingToken._withdrawDividendOfUser(address) (contracts/DividendPayingToken.sol#86-95): | no | — |
| high | detector | Untrusted DELEGATECALL target reachable | no | no |
| high | slither | Reentrancy in FetchInuDividendTracker.process(uint256) (contracts/FetchInuDividendTracker.sol#156-201): | no | — |
| high | detector | Authorization based on tx.origin | no | — |
| medium | detector | ETH value transfer possible | no | no |
| medium | detector | Untrusted CALL target/value reachable | no | no |
| medium | cast | DELEGATECALL present | no | — |
| low | codex | Owner can arbitrarily change dividend shares and exclude accounts | no | — |
| low | codex | Fixed 3000 gas stipend can permanently lock dividends for contract wallets | no | — |
| low | codex | External ETH transfer before state update can allow reentrant double-claims | no | — |
| info | cast | Heavy EXTCODE*/BALANCE usage | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 019bab3b-ac0d-70eb-9589-3835283d1f66 | complete | crit 0 high 0 | 11 | 3 months ago |
| 019b477e-c3c1-71bb-a237-ab8e1300ca3e | complete | crit 0 high 0 | 4 | 3 months ago |
| 019b3844-9ea3-70ff-bd62-60d30264cdcd | complete | crit 0 high 0 | 4 | 3 months ago |