Security Researcher
Blockchain Dev: Solidity | JavaScript | TypeScript | Web3js | Truffle | Nodejs | Etherjs | Hardhat | Foundry | Python Founder @loftyxphere
High
Total
Total Earnings
#2310 All Time
Payouts
Top 50
All
Sherlock
Dec '24
2.01 OP • 2 total findings • Sherlock • c-n-o-t-e
#48
high
Users whose orders has been executed Via `performUpkeep()`/`fillOrder()` can drain contracts(`Basket, OracleLess, StopLimit`) balance of their `tokenIn`.
Recipient Address Makes Transfers Instead of `Msg.Sender` In `StopLimit` and `OracleLess` Contract