| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | detector | Untrusted CALL target/value reachable | no | no |
| high | detector | ETH value transfer possible | no | no |
| medium | detector | CREATE/CREATE2 reachable | no | no |
| medium | codex | First oracle update ignores PERIOD, enabling short-window price manipulation | no | — |
| low | codex | Pair can be reinitialized by factory after deployment | no | — |
| low | codex | Burn parameter order inconsistent between interface/documentation and implementation | no | — |
| low | cast | Contract creation opcode present | no | — |
| low | codex | Oracle update can divide by zero on first call in the same block as creation | no | — |
| info | cast | Heavy CALL-family usage | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| a386b194-baf5-428b-9962-3a89e8adeeb2 | complete | crit 0 high 0 | 9 | 3 months ago |