mediumLogic errorEVM-Solidity
Putty: `fee` can change without the consent of users
- Payout
- $0
- Protocol
- Putty
- Disclosed
- Aug 7, 2026
- Source
- code4rena
The Putty protocol was vulnerable to an economic logic error where active option orders were susceptible to arbitrary fee increases. The protocol calculated fees based on current global state during withdrawal, rather than pinning the fee rate at the time an o …
Similar reports
- No close matches yet.
References
- https://github.com/code-423n4/2022-06-putty-findings/issues/422
- https://github.com/code-423n4/2022-06-putty-findings
This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.