Beginner FriendlyFoundryBridge
100 EXP
View results
Submission Details
Severity: high
Valid

Arbitrary from in transferFrom

Summary

Arbitrary from in transferFrom

Vulnerability Details

Detect when msg.sender is not used as from in transferFrom.

Impact

An attacker can perform a substitution from to an arbitrary address

Tools Used

Slither for detect this

Recommendations

Use msg.sender as from in transferFrom.

Updates

Lead Judging Commences

0xnevi Lead Judge almost 2 years ago
Submission Judgement Published
Validated
Assigned finding tags:

depositTokensToL2(): abitrary from address

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.