Moonwell

Moonwell
DeFiFoundry
15,000 USDC
View results
Submission Details
Severity: low
Invalid

`MErc20DelegateMadFixer::sweepAll()` - L14: In an otherwise perfect function, lack of address(0) check for parameter `sweeper`.

  1. LOW: MErc20DelegateMadFixer::sweepAll() - L14: In an otherwise perfect function, lack of address(0) check for parameter sweeper.

There seems to be no zero address checks anywhere down the call-train for the sweepAll() function for parameter sweeper.

Impact:

  • could accidentally send all the underlying tokens to be burned, instead of being sent to the community multisig.

  • could potentially impact internal accounting, purely because tokens are supposed to go to the multisig first, instead of being burnt immediately.

Updates

Lead Judging Commences

0xnevi Lead Judge over 1 year ago
Submission Judgement Published
Invalidated
Reason: Known issue

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.