NFTBridge
60,000 USDC
View results
Submission Details
Severity: low
Invalid

Missing call to _disableInitializers

Summary

Vulnerability Details

Missing call to _disableInitializers for UUPSUpgradeable (UUPSOwnableProxied is inherited from this contract and used in Starklane contract) - UUPSUpgradeable can be initialized in the implementation contract

Impact

Tools Used

Recommendations

Adding call to _disableInitializersinside `Starklane` contract constructor

Updates

Lead Judging Commences

n0kto Lead Judge 9 months ago
Submission Judgement Published
Invalidated
Reason: Lack of quality
Assigned finding tags:

finding-initialize-on-implementation

Likelyhood: Low/Medium Impact: Very low, the attacker can at most run the protocol on their side and lead a phishing campaign with an address deployed by Ark.

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.