The _SetDomainSeparator does not validate the name and version parameters. which can lead to the creation of incorrect or non-unique domain separators.
EIP712BBase.sol::_setDomainSeperator
Description:
If empty strings are passed as name or version, the resulting domain separator may not be unique. This undermines the security guarantees provided by the EIP-712 standard, potentially allowing for signature collisions or replay attacks
Domain Collisions: Non-unique domain separator can lead to signature reuse across different domains.
Security risks: Increases the risk of replay and signature forgery.
Manual code review
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.