This repository has been archived by the owner on Oct 27, 2024. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 10
Issues: sherlock-audit/2024-04-titles-judging
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
alexzoid - Incompatibility of Upgradeability Pattern in TitlesGraph Contract
Escalation Resolved
This issue's escalations have been approved/rejected
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#445
opened Apr 26, 2024 by
sherlock-admin4
ZdravkoHr. - A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
Edition.supportsInterface
is not EIP1155 compliant
Has Duplicates
#287
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Malicious EDITION_MANAGER_ROLE can front-run victims to increase royalty
Escalation Resolved
This issue's escalations have been approved/rejected
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Disputed
The sponsor disputed this issue's validity
Won't Fix
The sponsor confirmed this issue will not be fixed
#285
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - New creators unable to update the royalty target and the fee route for their works
Escalation Resolved
This issue's escalations have been approved/rejected
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#283
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Broken batch minting feature
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#280
opened Apr 26, 2024 by
sherlock-admin3
xiaoming90 - Signature is malleable
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Won't Fix
The sponsor confirmed this issue will not be fixed
#279
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Malicious users can block creators from acknowledging or deacknowledging an edge
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#273
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Excess ETH will be stuck in the Fee Manager contract and not swept back to the users
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#269
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Collection referrers will not receive their share of the minting fee
Escalation Resolved
This issue's escalations have been approved/rejected
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
High
A valid High severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#267
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Original collection referrer will be overwritten when a new collection/work is created
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
High
A valid High severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#265
opened Apr 26, 2024 by
sherlock-admin4
xiaoming90 - Users can exploit the batch minting feature to avoid paying minting fees for tokens
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
High
A valid High severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#264
opened Apr 26, 2024 by
sherlock-admin3
xiaoming90 - Minting can be DOSed by any of the fee recipients
Escalation Resolved
This issue's escalations have been approved/rejected
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Disputed
The sponsor disputed this issue's validity
Won't Fix
The sponsor confirmed this issue will not be fixed
#261
opened Apr 26, 2024 by
sherlock-admin4
brakeless - TitlesGraph::acknowledgeEdge() methods do not write acknowledgments to storage
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#212
opened Apr 26, 2024 by
sherlock-admin3
fibonacci - FeeManager's admin cannot grant or revoke any role
Escalation Resolved
This issue's escalations have been approved/rejected
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#148
opened Apr 26, 2024 by
sherlock-admin3
cducrest-brainbot - ERC2981 royalties discrepancy with strategy
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
#144
opened Apr 26, 2024 by
sherlock-admin3
Kalogerone - CREATE opcode works differently in the zkSync chain
Escalation Resolved
This issue's escalations have been approved/rejected
Has Duplicates
A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Disputed
The sponsor disputed this issue's validity
Won't Fix
The sponsor confirmed this issue will not be fixed
#91
opened Apr 26, 2024 by
sherlock-admin4
mt030d - Incorrect encoding of bytes for EIP712 digest in A valid issue with 1+ other issues describing the same vulnerability
Medium
A valid Medium severity issue
Reward
A payout will be made for this issue
Sponsor Confirmed
The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
TitleGraph
causes signatures generated by common EIP712 tools to be unusable
Has Duplicates
#74
opened Apr 26, 2024 by
sherlock-admin3
ProTip!
Find all open issues with in progress development work with linked:pr.