All reports
mediumAccess controlEVM-Solidity

Catalyst Exchange: No access control on IncentivzedMessageEscrow's ``submitMessage`` can lead to a short-term dos of users

Payout
$0
Protocol
Catalyst Exchange
Disclosed
Jan 26, 2024
Source
hats

Catalyst Exchange's IncentivizedMessageEscrow exposes a submitMessage follow-up function meant to finalize cross-chain asset transfers by setting the relayer bounty and dispatching the packet, but it lacks access control and the checkRouteDescription incentive …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.