There is a vulnerability in the Protocol NativeMetaTransaction.sol that allows for user signed orders to be replayed. This means that the same order can be executed multiple times, potentially leading to loss of funds.
User signed orders can be replayed which could potential loss of funds when executed multiple times.
Manual Review
Introduce nonce and verification that operator parameters are the same that the user signed.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.