QA Report #137
Labels
bug
Something isn't working
QA (Quality Assurance)
Assets are not at risk. State handling, function incorrect as to spec, issues with clarity, syntax
resolved
Finding has been patched by sponsor (sponsor pls link to PR containing fix)
reviewed
Issues that Backd has reviewed (just for internal tracking, can ignore this)
(Non-Critical) It’s better to use SafeERC20
Impact
It’s better to use the trusted 3rd party library SafeERC20 to check the return value of
transfer
.Proof of Concept
https://github.com/code-423n4/2022-04-backd/blob/main/backd/contracts/actions/topup/handlers/CompoundHandler.sol#L79-L80
Tools Used
vim, ethers.js
Recommended Mitigation Steps
Use SafeERC20 rather than checking manually.
The text was updated successfully, but these errors were encountered: