Low Smart contract exploit Source: SlowMist Team

BonfireSwap experienced a loss of approximately $50k due to a missing access control in its router's transfer function

BonfireSwap experienced a loss of approximately $50k due to a missing access control in its router's transfer function. The vulnerability allowed unauthorized users to transfer tokens by not verifying the caller's allowance.

Estimated loss
$50,000
Protocols
BonfireSwap
Confidence
High
First seen
16 Sep 2026, 03:38 UTC

Read the original report ↗ (opens in a new tab)