defirisk.co
rubric v1.7.0

Shared-library version with known-vuln status

PancakeSwap's assessment for RD-F-135 — scored green on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

V3: @openzeppelin/contracts 3.4.2-solc-0.7 — no active high/critical GHSA advisory for OZ 3.4.x affecting AMM patterns (no upgradeable proxy, no governance in V3 core). V2: no OZ dependency in core pair/factory. Infinity: Foundry-based with solc 0.8.26 — newer stack. No active library advisory identified for the deployed versions.

Sources #

Methodology #

Identify the version of key shared libraries (OZ, Solady, Solmate) used and check against CVE/GHSA databases for any active advisory.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol pancakeswap factor RD-F-135 score green collected_at 2026-04-28 19:10:57