An issue in Coresmartcontracts Uniswap v.3.0 and fixed in v.4.0 allows a remote attacker to escalate privileges via the _modifyPosition function
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.