All reports
highFront-running / MEVEVM-Solidity

Putty: `acceptCounterOffer()` May Result In Both Orders Being Filled

Payout
$0
Protocol
Putty
Disclosed
Aug 7, 2026
Source
code4rena

The Putty protocol suffered from a race condition in the acceptCounterOffer() function that allowed users to be unintentionally over-leveraged. An attacker could front-run the cancellation of an original order by filling it, which allowed the protocol to subse …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.