The SalbierFlow::withdraw
function does not have the nonce
parramter that ensures a signature and a transaction can only be used at once.
Here are the details below without Nonce
Without nonce in a withdraw funcrion, attacker can drain a user by resuing the signature onchain that has been used previosly for a transaction and effectively using the signature to steal money from the user that has the signature.
Manual review
Addition of nonce and there are checks for it.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.