57090 sc low ownership transfer failure in alchemistcurator https github com alchemix finance v3 poc blob immunefi audit src alchemistcurator sol prevents future dao governance or recovery
Description
Brief / Intro
Vulnerability Details
function acceptAdminOwnership() external onlyAdmin {
admin = pendingAdmin;
pendingAdmin = address(0);
emit AdminChanged(admin);
}Impact Details
References
Proof of Concept
Proof of Concept
Previous58778 sc low zeroxswapverifier implements incorrect data extraction logic enabling verification bypass in future strategy integrationsNext57360 sc critical unreconciled repayment fee transfer enables myt overpayment and tvl inflation
Was this helpful?