Beginner FriendlyFoundryDeFiOracle
100 EXP
View results
Submission Details
Severity: medium
Valid

Owner can set any token - might break things

Summary

Owner can set any ERC20 token

Vulnerability Details

Some ERC20 tokens implement certain functions differently, for example transfer(), and can cause unexpected results

Impact

Medium - can possibly happen even accidentally and can cause unexpected results

Tools Used

Manual inspection

Recommendations

Maintain an allow list of accepted tokens or make sanity checks for proper functionality or make sure certain actions revert if token does not behave according to specs

Updates

Lead Judging Commences

0xnevi Lead Judge
almost 2 years ago
0xnevi Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Admin Input/call validation
0xnevi Lead Judge almost 2 years ago
Submission Judgement Published
Validated
Assigned finding tags:

centralized owners can brick redemptions by unallowing a token

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.