| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | detector | Untrusted CALL target/value reachable | yes | yes |
| high | detector | ETH value transfer possible | yes | yes |
| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | codex | Selector 0xa9059cbb appears to grant authorization and invoke a callback instead of performing an ERC20 transfer | no | — |
| medium | codex | Approval/callback path performs external CALL after state mutation with no detected guard | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 019b3836-35f6-70f6-b91f-9db2da6f60d7 | complete | crit 0 high 2 | 4 | 3 months ago |