Critical
$5,000 - $25,000Vulnerabilities that could lead to direct loss of funds, complete compromise of smart contract logic, or unauthorized access to all user escrows.
- •Unauthorized fund withdrawal from escrows
- •Bypass of multi-signature requirements
- •Manipulation of escrow states without authorization
- •Complete bypass of access controls
High
$2,000 - $5,000Significant vulnerabilities that could impact a subset of users or require specific conditions to exploit.
- •Partial bypass of access controls
- •Fee manipulation or theft
- •Dispute resolution bypass
- •Unauthorized state changes under specific conditions
Medium
$500 - $2,000Vulnerabilities with limited impact or requiring significant user interaction to exploit.
- •Information disclosure of sensitive data
- •Griefing attacks that don't result in fund loss
- •Logic errors with limited impact
- •Gas optimization issues with security implications
Low
$100 - $500Minor issues with minimal security impact.
- •Minor information disclosure
- •UI/UX issues with security implications
- •Best practice violations
- •Minor smart contract inefficiencies