Payouts
3rd Places
Top 10
Top 25
All
Sherlock
Code4rena
Jul '24
Jun '24
Apr '24
Mar '24
medium
Bridged tokens would be lost if sender and receiver are contracts that don't implement fallback/receive
medium
First block proposer check in the `LibProposing._isProposerPermitted` function is errorneous
medium
Bridge watcher can forge arbitrary message and drain bridge
medium
retryMessage unable to handle edge cases.
medium
The top tier prover can not re-prove
medium
There is no slippage check for the eth deposits processing in the `LibDepositing.processDeposits`
medium
Malicious caller of `processMessage()` can pocket the fee while forcing `excessivelySafeCall()` to fail
Feb '24