VYPR

Contracts

by Openzeppelin

CVEs (24)

  • CVE-2023-34234MedJun 7, 2023
    risk 0.27cvss 5.3epss 0.01

    OpenZeppelin Contracts is a library for smart contract development. By frontrunning the creation of a proposal, an attacker can become the proposer and gain the ability to cancel it. The attacker can do this repeatedly to try to prevent a proposal from being proposed at all.…

  • CVE-2022-35916MedAug 1, 2022
    risk 0.27cvss 5.3epss 0.01

    OpenZeppelin Contracts is a library for secure smart contract development. Contracts using the cross chain utilities for Arbitrum L2, `CrossChainEnabledArbitrumL2` or `LibArbitrumL2`, will classify direct interactions of externally owned accounts (EOAs) as cross chain calls,…

  • CVE-2024-45304MedAug 31, 2024
    risk 0.00cvss 5.3epss 0.00

    Cairo-Contracts are OpenZeppelin Contracts written in Cairo for Starknet, a decentralized ZK Rollup. This vulnerability can lead to unauthorized ownership transfer, contrary to the original owner's intention of leaving the contract without an owner. It introduces a security risk…

  • CVE-2021-46320HigFeb 4, 2022
    risk 0.00cvss 7.5epss 0.01

    In OpenZeppelin <=v4.4.0, initializer functions that are invoked separate from contract creation (the most prominent example being minimal proxies) may be reentered if they make an untrusted non-view external call. Once an initializer has finished running it can never be…

Page 2 of 2