arbitrary-swap

1 article
sort: new top best
clear filter
0 6/10
O3
vulnerability

O3's cross-chain bridge aggregators allow arbitrary address impersonation via the callproxy parameter in exactInputSinglePToken(), enabling attackers to execute swaps using victim-approved funds and redirect outputs to attacker addresses. The vulnerability affects all aggregators across supported chains except when users set MAX_APPROVE.

O3 O3EthereumUniswapV3Aggregator 0x561f712b4659be27efa68043541876a137da532b 0xC11073e2F3EC407a44b1Cff9D5962e6763F71187 Uniswap V3 USDT USDC 0xDjango Immunefi
trust-security.xyz · Trust · 6 hours ago · details