mediumAccess controlEVM-Solidity
Good Entry: User can steal refunded underlying tokens from `initRange` operation inside `RangeManager`
- Payout
- $0
- Protocol
- Good Entry
- Disclosed
- Aug 7, 2026
- Source
- code4rena
Good Entry's RangeManager.initRange bootstraps a TokenisableRange by pulling underlying tokens and delegating the Uniswap v3 NFT mint to TokenisableRange.init, returning only the minted TR token to the owner. Uniswap v3 minting routinely refunds unused underly …
Similar reports
- No close matches yet.
References
- https://github.com/code-423n4/2023-08-goodentry-findings/issues/254
- https://github.com/code-423n4/2023-08-goodentry-findings
This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.