dispute

1 article
sort: new top best
clear filter
0 8/10
O3
vulnerability

O3 DeFi bridge aggregators are vulnerable to token theft through callproxy parameter impersonation in the exactInputSinglePToken function, allowing attackers to redirect victim-approved funds to attacker-controlled addresses. The vulnerability affects all O3 aggregators across supported chains but is mitigated if users set MAX approval rather than finite amounts.

O3 O3EthereumUniswapV3Aggregator Uniswap V3 Immunefi 0xDjango CVE (not provided) 0x561f712b4659be27efa68043541876a137da532b 0xC11073e2F3EC407a44b1Cff9D5962e6763F71187
trust-security.xyz · Trust · 17 hours ago · details