Skip to content

CRITICAL VULN DISCLOSURE: FraxEtherRedemptionQueue  #157

@donnyoregon

Description

@donnyoregon

[CRITICAL] VULN DISCLOSURE: FraxEtherRedemptionQueue

I have identified a Critical DoS vulnerability in the frxETH Redemption Queue (Mainnet).
Permanently locks all user funds in the queue.
Cost to attack is near zero (gas only).
No admin privileges required.
I have a fully reproducible Foundry PoC on a Mainnet fork confirming the lock.
I am following your "No Questions Asked" bounty policy.
Please provide a secure channel (Signal preferred)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions