| Severity | Tool | Title | Validated | Confirmed |
|---|---|---|---|---|
| high | slither | VaultLib.processor(address[],uint256[],bytes[]) (src/library/VaultLib.sol#319-336) sends eth to arbitrary user | no | — |
| high | slither | TimelockController._execute(address,uint256,bytes) (lib/openzeppelin-contracts/contracts/governance/TimelockController.sol#412-415) sends eth to arbitrary user | no | — |
| high | detector | Untrusted DELEGATECALL target reachable | no | no |
| high | codex | processAccounting ignores buffer/strategy assets, enabling share price manipulation | no | — |
| high | detector | Authorization based on tx.origin | no | — |
| medium | detector | Untrusted CALL target/value reachable | no | no |
| medium | detector | CREATE/CREATE2 reachable | no | no |
| medium | cast | DELEGATECALL present | no | — |
| medium | detector | ETH value transfer possible | no | no |
| medium | codex | Share pricing fully trusts provider rates without validation or staleness checks | no | — |
| low | codex | Fee-on-transfer tokens can inflate shares and totalAssets | no | — |
| low | cast | Contract creation opcode present | no | — |
| info | cast | Heavy EXTCODE*/BALANCE usage | no | — |
| Run ID | Status | Validated | Total findings | Created |
|---|---|---|---|---|
| 019bab3d-c746-7355-af08-a01c5cba9495 | complete | crit 0 high 0 | 13 | 3 months ago |