Skip to content

Issues: code-423n4/2024-05-arbitrum-foundation-validation

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or ⇧ + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

Re-org attack in some functions 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_57_group AI based duplicate group recommendation
#386 opened May 27, 2024 by c4-bot-9
Anyone can call admin functions in RollupAdminLogic.sol 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_44_group AI based duplicate group recommendation
#384 opened May 27, 2024 by c4-bot-9
EdgeChallengeManager.sol:: Unprotected Staking Operations 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_33_group AI based duplicate group recommendation
#383 opened May 27, 2024 by c4-bot-6
AssertionStakingPoolCreator.getPool() is vulnerable to address collission 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_06_group AI based duplicate group recommendation
#382 opened May 27, 2024 by c4-bot-3
Arbitrary Third-party Contract Calls 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_05_group AI based duplicate group recommendation
#381 opened May 27, 2024 by c4-bot-3
Non-Unique Salt Value in createPool Function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_80_group AI based duplicate group recommendation
#380 opened May 27, 2024 by c4-bot-4
Excessive Privilege in Function removeDelayAfterFork() 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation
#379 opened May 27, 2024 by c4-bot-8
DelayBuffer.sol:: Unhandled Overflow in Buffer Calculation 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation
#378 opened May 27, 2024 by c4-bot-8
EdgeStakingPool.sol:: Token Contract Manipulation Vulnerability in the function createEdge() 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_80_group AI based duplicate group recommendation
#377 opened May 27, 2024 by c4-bot-8
there is an i ncorrect Handling of Validator AFK Check in _validatorIsAfk 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_60_group AI based duplicate group recommendation
#376 opened May 27, 2024 by c4-bot-9
QA Report bug Something isn't working QA (Quality Assurance) Assets are not at risk. State handling, function incorrect as to spec, issues with clarity, syntax
#375 opened May 27, 2024 by c4-bot-9
firstChildBlock value not set when first child assertion is created. 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden πŸ€–_primary AI based primary recommendation
#374 opened May 27, 2024 by c4-bot-10
Dubious typecast in the following functions getTimeBounds & setValidKeyset & _setBufferConfig & submiteBatchSpendingReport & _setMaxTimeVariation & formCallDataHash & packHeader functions 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_41_group AI based duplicate group recommendation
#373 opened May 27, 2024 by c4-bot-4
Potential Theft of Funds Due to Static Salt in Contract Creation During Reorgs 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden πŸ€–_57_group AI based duplicate group recommendation
#371 opened May 27, 2024 by c4-bot-1
Theft of funds under in the Sequencer in the form of gas 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_05_group AI based duplicate group recommendation
#370 opened May 27, 2024 by c4-bot-4
Griefing Attack Possible Where Validator Will Lose Their Stake 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_03_group AI based duplicate group recommendation
#369 opened May 27, 2024 by c4-bot-8
Insufficient Challenge Period Validation 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_27_group AI based duplicate group recommendation
#367 opened May 27, 2024 by c4-bot-8
Dubious typecast in the following functions update function and calcPendingBuffer function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_41_group AI based duplicate group recommendation
#366 opened May 27, 2024 by c4-bot-6
Insufficient Validation of stakeAmounts Non-Zero Values 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_33_group AI based duplicate group recommendation
#365 opened May 27, 2024 by c4-bot-8
RollupAdminLogic : lack of access control for some of the critical functionality 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_44_group AI based duplicate group recommendation
#364 opened May 27, 2024 by c4-bot-7
QA Report bug Something isn't working QA (Quality Assurance) Assets are not at risk. State handling, function incorrect as to spec, issues with clarity, syntax
#363 opened May 27, 2024 by c4-bot-3
Incorrect equality in the functions called getKeysetCreationBlock and packHeader function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_68_group AI based duplicate group recommendation
#362 opened May 27, 2024 by c4-bot-3
Withdrawals can be delayed in some conditions 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_primary AI based primary recommendation
#361 opened May 27, 2024 by c4-bot-3
RollupAdminLogic : anyone can call the pause() and resume() 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_53_group AI based duplicate group recommendation
#360 opened May 27, 2024 by c4-bot-7
Lack of Event Emission for Critical State Changes 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation
#359 opened May 27, 2024 by c4-bot-9
ProTip! Type g p on any issue or pull request to go back to the pull request listing page.