According to BlockBeats, on November 26, Uniswap Labs announced the launch of a $15.5 million official bug bounty program for its v4 version. This initiative aims to encourage responsible disclosure of vulnerabilities, with all reports required to be submitted directly to the v4 Bug Bounty page on Cantina within 24 hours of discovery.
The program specifies that certain issues are not within its scope. These include vulnerabilities in third-party contracts not deployed by Uniswap Labs, issues already listed in contract audits within the v4 repository, vulnerabilities in third-party contracts or applications using Uniswap Labs-deployed contracts, and problems identified in previous internal reviews, competitions, and audits.
Currently, the peripheral contracts of Uniswap v4 are not included in the scope of the bounty program. However, there are plans to incorporate them into the program soon.