Core Contracts

Regnum Aurum Acquisition Corp
HardhatReal World AssetsNFT
77,280 USDC
View results
Submission Details
Severity: low
Invalid

No Function to Revoke Roles in Treasury Contract Leading to Irreversible role assignment

Finding description and impact

Once a role is granted to an address, it cannot be revoked. This poses security risks if a privileged address is compromised.

Proof of Concept

  • The contract lacks a revokeRole function.

Recommended mitigation steps

Implement a revokeRole function to allow removal of roles when needed.

Updates

Lead Judging Commences

inallhonesty Lead Judge 6 months ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity
inallhonesty Lead Judge 6 months ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.