| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | slither | TimelockController._execute(address,uint256,bytes) (contracts/Contract.sol#1485-1491) sends eth to arbitrary user | no | — |
| high | detector | Untrusted CALL target/value reachable | no | no |
| high | detector | ETH value transfer possible | no | no |
| high | slither | Reentrancy in TimelockController.execute(address,uint256,bytes,bytes32,bytes32) (contracts/Contract.sol#1437-1448): | no | — |
| high | slither | Reentrancy in TimelockController.executeBatch(address[],uint256[],bytes[],bytes32,bytes32) (contracts/Contract.sol#1458-1483): | no | — |
| low | codex | Deployer retains TIMELOCK_ADMIN_ROLE, enabling immediate role changes outside timelock | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 019be3d6-8489-7000-bd40-224825ebd461 | complete | crit 0 high 0 | 6 | 2 months ago |
| 019b477e-cd19-730c-b9f0-51c5852110f6 | complete | crit 0 high 0 | 2 | 3 months ago |
| 019b3844-a534-7151-b874-b80d60525606 | complete | crit 0 high 0 | 2 | 3 months ago |