Sablier

Sablier
DeFiFoundry
53,440 USDC
View results
Submission Details
Severity: medium
Valid

Insufficient input validation on `SablierV2NFTDescriptor::safeAssetSymbol` allows an attacker to obtain stored XSS

Updates

Lead Judging Commences

inallhonesty Lead Judge 12 months ago
Submission Judgement Published
Validated
Assigned finding tags:

SVG Injection

T1MOH Auditor
12 months ago
bladesec Auditor
12 months ago
befree3x Submitter
12 months ago
ge6a Judge
12 months ago
bladesec Auditor
12 months ago
inallhonesty Lead Judge
12 months ago
bladesec Auditor
12 months ago
pks271 Auditor
12 months ago
bladesec Auditor
12 months ago
inallhonesty Lead Judge 11 months ago
Submission Judgement Published
Validated
Assigned finding tags:

SVG Injection

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.