mediumAccess controlEVM-Solidity
The Wildcat Protocol: Role providers can bypass intended restrictions and lower expiry set by other providers
- Payout
- $0
- Protocol
- The Wildcat Protocol
- Disclosed
- Oct 24, 2024
- Source
- code4rena
In Wildcat Protocol's credential management logic, role updating rules were intended to prevent one role provider from reducing the expiry duration set by another provider. However, an authorized role provider can circumvent this restriction via a two-transact …
Similar reports
- No close matches yet.
References
- https://github.com/code-423n4/2024-08-wildcat-findings/issues/57
- https://github.com/code-423n4/2024-08-wildcat-findings
This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.