Payouts
2nd Places
Top 10
Top 25
All
Code4rena
Cantina
CodeHawks
Feb '25
high
MergeTgt has no handling if TGT_TO_EXCHANGE is exceeded during the exchange period
high
The user can send tokens to any address by using two bridge transfers, even when transfers are restricted.
medium
Improper Transfer Restrictions on Non-Bridged Tokens Due to Boolean Bridged Token Tracking, Allowing a DoS Attack Vector
Aug '24
Jul '24
May '24
medium
Mar '24
Oct '23
Aug '23
medium
The `digest` calculation in `deployProxyAndDistributeBySignature` does not follow EIP-712 specification
medium
Malicious/Compromised organiser can reclaw all funds, stealing work from supporters
low
If a winner is blacklisted on any of the tokens they can't receive their funds
low
Centralization Risk for trusted organizers
low
Using basis points for percentage is not precise enough for realistic use-cases
Jul '23