highLogic errorEVM-Solidity
Tapioca: Malicious MarketHelper contract can be used in TOFTMarketReceiverModule's leverageUpReceiver and marketRemoveCollateralReceiver functions
- Payout
- $0
- Protocol
- Tapioca
- Disclosed
- Mar 15, 2024
- Source
- sherlock
Tapioca's TOFTMarketReceiverModule builds a market.execute() call sequence from a marketHelper contract passed directly in the cross-chain message payload. Only the market address is whitelist-checked while the helper is not, so an attacker can substitute an a …
Similar reports
- No close matches yet.
References
This report is already public and closed. CoinBuggie never publishes active or unpatched vulnerability data.