QA Report #330
Labels
bug
Something isn't working
QA (Quality Assurance)
Assets are not at risk. State handling, function incorrect as to spec, issues with clarity, syntax
valid
L-01 : Change admin in 2 steps
Code:
https://github.com/code-423n4/2022-08-rigor/blob/5ab7ea84a1516cb726421ef690af5bc41029f88f/contracts/HomeFi.sol#L157
I recommend changing admin in 2 steps to prevent setting wrong address as admin.
Proof of Concept : Change to new address
Claim new Address
Similar action is recommended for changing Treasury in HomeFi.sol.
L-02: Admin can change fees to any arbitrary amount
Instance:
https://github.com/code-423n4/2022-08-rigor/blob/5ab7ea84a1516cb726421ef690af5bc41029f88f/contracts/HomeFi.sol#L185
I recommend setting any limit to the fees that admin can set.
The text was updated successfully, but these errors were encountered: