15,000 USDC
View results
Submission Details
Severity: gas

When testing on Sepolia the `wBTC` used address is that of an EOA

Description

When testing on Sepolia the wBTC address returned by HelperConfig.s::getSepoliaEthConfig is an EOA:
https://sepolia.etherscan.io/address/0x8f3Cf7ad23Cd3CaDbD9735AFf958023239c6A063

Recommend Mitigation

From what the author of this issue knows, there is no canonical wBTC address on Sepolia (similar to how WETH exists), as such any mock wBTC ERC20 token with 8 decimals should be used to actually test on-chain activity, not an EOA.

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.