| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | detector | Untrusted CALL target/value reachable | no | no |
| high | detector | ETH value transfer possible | no | no |
| medium | codex | Redemption requests lock in unvalidated tokenOutRate, enabling oracle manipulation or stuck approvals | no | — |
| medium | codex | Swapper redemption bypasses downstream vault user restrictions | no | — |
| info | cast | Heavy EXTCODE*/BALANCE usage | no | — |
| info | cast | Heavy CALL-family usage | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| bddcd8f3-74d3-4179-a483-8bea78dea0c2 | failed | crit 0 high 0 | 4 | 3 months ago |
| e18349bc-6257-4bf3-a411-59058d33edf0 | failed | crit 0 high 0 | 6 | 3 months ago |