LikeRegistry.sol::withdrawFees
Mishandling of EthOwner May Be a Smart Contract That Cannot Receive ETH.
If owner() is set to a smart contract without a payable fallback function, the transfer will always fail. and could cause DOS.
The owner will never be able to withdraw funds, permanently locking ETH in the contract.
Manual Review / Aderyn
Allow specifying a recipient address instead of forcing owner()
Please read the CodeHawks documentation to know which submissions are valid. If you disagree, provide a coded PoC and explain the real likelyhood and the detailed impact on the mainnet without any supposition (if, it could, etc) to prove your point.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.