Audit Open Original ↗
Swap Coffee TON DEX
Type
Security review
Client
Swap Coffee
Date
2025-07
Domain
Blockchain
Effort
6 wks
Section
TON
Trail of Bits's security review of Swap Coffee (Jul 2025) identified 7 issues: 3 high, 1 medium, 2 low, and 1 informational.
Findings · 7
- 1 Token minting vulnerability in LP token notification handling High
- 2 Incorrect logical operator in reserve ratio validation allows out-of-range ratios Medium
- 3 Single-step upgrades and ownership changes Low
- 4 Malformed admin update data High
- 5 Spoofable transaction initiator allows unauthorized creation of stable pools Low
- 6 Arbitrary messages can be executed via vault notification messages High
- 7 Incorrect message value accounting Informational
Findings extracted from the published report PDF. See the full report below for details and remediation.
Related