Audit Open Original ↗
Flexa
Type
Security review
Client
Flexa
Date
2019-09
Domain
Blockchain
Effort
2 wks
Section
Ethereum/EVM
Trail of Bits's security review of Flexa (Sep 2019) identified 7 issues: 2 high, 1 medium, 1 low, and 3 informational.
Findings · 7
- 1 Initial configuration may allow an attacker to refund an unconfirmed deposit early on Low
- 2 Front-running fallback root update might lead to additional withdrawal High
- 3 Missing nonce on PendingDepositRefund event might lead to a double spend High
- 4 A withdrawal root could be added again a ter removal Informational
- 5 Missing validations on administration functions Medium
- 6 setOwner should be split into two separate functions Informational
- 7 Reentrancy could cause incorrect information to be emitted Informational
Findings extracted from the published report PDF. See the full report below for details and remediation.
Related