Trail of Bits

NFTX

Type

Security review

Client

NFTX

Date

2022-04

Domain

Blockchain

Effort

4 wks

Section

Ethereum/EVM

Trail of Bits's security review of NFTX (Apr 2022) identified 10 issues: 5 medium, and 5 informational.

Findings · 10

  1. 1 Reliance on third-party library for deployment Informational
  2. 2 Missing validation of proxy admin indices Informational
  3. 3 Random token withdrawals can be gamed Informational
  4. 4 Duplicate receivers allowed by addReceiver() Medium
  5. 5 OpenZeppelin vulnerability can break initialization Informational
  6. 6 Potentially excessive gas fees imposed on users for protocol fee distribution Medium
  7. 7 Risk of denial of service due to unbounded loop Medium
  8. 8 A malicious fee receiver can cause a denial of service Medium
  9. 9 Vault managers can grief users Medium
  10. 10 Lack of zero address check in functions Informational

Findings extracted from the published report PDF. See the full report below for details and remediation.

Related