Low Smart contract exploit Source: SlowMist Team

SlowMist reported a loss of approximately 24.7 ETH due to missing access control in the createOrderForBuyer function of an order factory

SlowMist reported a loss of approximately 24.7 ETH due to missing access control in the createOrderForBuyer function of an order factory. The vulnerability allowed unauthorized calls without proper sender or authorization verification.

Confidence
High
First seen
9 Sep 2026, 02:38 UTC

Read the original report ↗ (opens in a new tab)