Missing Event Emission on Oracle Update Reduces Off-Chain Observability
Description:
Stratax::setStrataxOracle() updates a critical dependency (strataxOracle) but does not emit any event:
For admin changes (especially oracle changes), emitting an event is important so indexers, monitoring bots, frontends, and auditors can reliably track configuration changes over time.
Impact:
Low. No direct on-chain vulnerability, but it:
Makes it harder to detect oracle changes off-chain
Reduces transparency and operational monitoring
Complicates incident response / forensic analysis
Recommended Mitigation:
Add an event and emit it when updating the oracle (ideally including old + new address).
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.
The contest is complete and the rewards are being distributed.