Skip to content

OZ audit low severity fixes#2748

Merged
maurelian merged 14 commits intobedrock-mergefrom
m/low-oz-fixes
Jun 14, 2022
Merged

OZ audit low severity fixes#2748
maurelian merged 14 commits intobedrock-mergefrom
m/low-oz-fixes

Conversation

@maurelian
Copy link
Copy Markdown
Contributor

@maurelian maurelian commented Jun 10, 2022

This PR fixes the Low and Informational severity issues issues in the OpenZeppelin audit (which is not yet public). Each commit in this PR clearly references the finding that it addresses.

In order to review, I suggest comparing between the audit report (see the "Open Zeppelin Audit Resolution" doc in Notion), and the commit which mentions it.

In order to ensure that the changes are applied to the original audit code, this PR is being applied to the state of the develop branch as it was immediately after merging the bedrock branch (#2563).

@changeset-bot
Copy link
Copy Markdown

changeset-bot bot commented Jun 10, 2022

⚠️ No Changeset found

Latest commit: afdf38d

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@maurelian maurelian changed the title contracts: Fix L-01 use _from instead of msg.sender OZ audit low severity fixes Jun 10, 2022
@maurelian
Copy link
Copy Markdown
Contributor Author

There is no changeset here, because contracts-bedrock was not a package at this point in history.

@smartcontracts
Copy link
Copy Markdown
Contributor

Do we need to pull this into the current version of the codebase?

@smartcontracts
Copy link
Copy Markdown
Contributor

I propose we make a simultaneous PR that commits these changes into develop

@maurelian
Copy link
Copy Markdown
Contributor Author

maurelian commented Jun 10, 2022

I propose we make a simultaneous PR that commits these changes into develop

Good call, I'll do that. I'm having some trouble getting the patch to apply, atm though, and don't think it should block this so we can pass back to OZ.

@maurelian
Copy link
Copy Markdown
Contributor Author

Merging this.
Internal review can be done on #2763

@maurelian maurelian merged commit 3a0097e into bedrock-merge Jun 14, 2022
@maurelian maurelian deleted the m/low-oz-fixes branch June 14, 2022 13:55
theochap pushed a commit that referenced this pull request Dec 10, 2025
Updates execution dependencies.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants