https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/5b6eb5a8-bc8f-419f-9e2d-026f08bf0ecc.jpg

c-n-o-t-e

Security Researcher

Blockchain Dev: Solidity | JavaScript | TypeScript | Web3js | Truffle | Nodejs | Etherjs | Hardhat | Foundry | Python Founder @loftyxphere

Contact Me

High

2

Total

$2.00

Total Earnings

#2343 All Time

1x

Payouts

regular

1x

Top 50

All

Sherlock

Dec '24

Oku's New Order Types Contract Contest

Oku's New Order Types Contract Contest

2.01 OP • 2 total findings • Sherlock • c-n-o-t-e

#48

high

Users whose orders has been executed Via `performUpkeep()`/`fillOrder()` can drain contracts(`Basket, OracleLess, StopLimit`) balance of their `tokenIn`.

high

Recipient Address Makes Transfers Instead of `Msg.Sender` In `StopLimit` and `OracleLess` Contract