Beginner FriendlyFoundryBridge
100 EXP
View results
Submission Details
Severity: high
Valid

SIGNATURE_REPLAY_POSSIBILITY

Summary

Signature can be accepted several times

Vulnerability Details

Signed messages do not contain nonce parameter and the same signature can be passes several times

Impact

Lost money by several withdrawings using one signature

Tools Used

Recommendations

Add nonce parameter to the signature

Updates

Lead Judging Commences

0xnevi Lead Judge almost 2 years ago
Submission Judgement Published
Validated
Assigned finding tags:

withdrawTokensToL1()/sendToL1(): signature replay

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.