DeFiHardhatOracleProxyUpdates
100,000 USDC
View results
Submission Details
Severity: low
Invalid

Any external address can execute the unwrapAndSendETH function

Summary

Any external address can execute the unwrapAndSendETH function

Vulnerability Details

The absence of an access control mechanism can cause any external address to trigger this function

Impact

This can cause unauthorised unwrapping and sending of eth

Tools Used

Manual Review

Recommendations

An appropriate access control mechanism can prevent this issue e.g Ownable.sol import from OpenZepplin

Updates

Lead Judging Commences

giovannidisiena Lead Judge over 1 year ago
Submission Judgement Published
Invalidated
Reason: Design choice
Assigned finding tags:

Pipeline access control

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.