A lack of target address verification in the destroycontract() function of 0xRACER 1.0 allows attackers to steal tokens from victim users via a crafted script.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Zeroxracer | Zeroxracer_project | 1.0 (including) | 1.0 (including) |
References