-
**Github username:** @0xfuje
**Submission hash (on-chain):** 0x36017d31e01ddb05bb8d06e3e4605bb6be9d5200023c1af026abe08c37caa144
**Severity:** high
**Description:**
## Impact
Complete takeover of `Sa…
-
There have been several discussions with the threat modeling community, from users and open source and commercial vendors, to add support for **natively** representing threat models in CycloneDX.
C…
-
The inception model I reproduced couldn't do what you did. We usually have 229✖229 as input for that model, here it is 224✖224. does this have any effect please? Looking forward to your reply.
-
# Lines of code
https://github.com/code-423n4/2024-03-revert-lend/blob/main/src/V3Vault.sol#L968-L969
# Vulnerability details
## Impact
The user will repay but his debt will not decrease.
## Proo…
-
**Github username:** --
**Twitter username:** @EgisSec
**Submission hash (on-chain):** 0x394cd36d799f0799e466aadbfdef47056f3dd861bf1769bbc74599f70ff83033
**Severity:** high
**Description:**
**Descri…
-
Numbers larger than 2^64 are truncated by parse_z. It's ok not to be able to parse it, but this should be an error rather than silently dropping some bits. This could be exploited by an attacker to tr…
-
If a UIA issuer has authority to allow or deny users with whitelisting, a possibility of spam attack can be significantly reduced and easily controlled out. In this case, a UIA issuer may want to remo…
-
**Github username:** --
**Twitter username:** --
**Submission hash (on-chain):** 0x080ec85127c3fbad2166363af2075849afbb3c43543d08a932c85318df0fdf1c
**Severity:** minor
**Description:**
**Description…
-
https://www.nippon.com/en/news/yjj2023011000977/
-
# Lines of code
https://github.com/code-423n4/2023-12-ethereumcreditguild/blob/2376d9af792584e3d15ec9c32578daa33bb56b43/src/governance/ProfitManager.sol#L416-L418
# Vulnerability details
When `cla…