mediumLogic errorEVM-Solidity
Flayer: Malicious user can bypass execution of `CollectionShutdown` function
- Payout
- $0
- Protocol
- Flayer
- Disclosed
- Sep 15, 2024
- Source
- sherlock
Flayer's CollectionShutdown module lets a locker manager permanently prevent a collection from being shut down, but the guard in preventShutdown only checks that shutdownVotes equals zero. Because start() increments shutdownVotes via _vote while reclaimVote() …
Similar reports
- No close matches yet.
References
This report is already public and closed. CoinBuggie never publishes active or unpatched vulnerability data.