Sablier

Sablier
DeFiFoundry
53,440 USDC
View results
Submission Details
Severity: low
Invalid

Use OpenZepplin Two Step Ownership Instead of Minimal Admin Access Logic

Summary

Adminable is using minimal logic for Admin based functions and transfer of Admin.

Vulnerability Details

Adminable is an abstract contract that has basic access control for admin that can call specific functions. It also has function name transferAdmin which update admin to new admin without performing any necessary checks

Impact

Admin can be transferred to incorrect address mistakenly because of lack of conditions and two step ownership

Tools Used

Manual

Recommendations

Consider using two-step ownership by Open-Zepplin

Updates

Lead Judging Commences

inallhonesty Lead Judge about 1 year ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity
Assigned finding tags:

Info/Gas/Invalid as per Docs

https://docs.codehawks.com/hawks-auditors/how-to-determine-a-finding-validity

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.