Beginner FriendlyFoundryBridge
100 EXP
View results
Submission Details
Severity: high
Invalid

SIGNATURE_NO_PROTOCOL_PINNING

Summary

Signature from other contract or protocol can be valid for the bridge

Vulnerability Details

Contract name or protocol name is not pinned in the message. Signature from another protocol can be a valid signature for the bridge

Impact

Withdraw using signature from other protocol

Tools Used

Recommendations

Add contract name or protocol name to the message to sign

Updates

Lead Judging Commences

0xnevi Lead Judge
about 2 years ago
0xnevi Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Too generic

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.