-
I rebuilt the transaction procedures during refactor. They should work properly now, but I get a feeling oralces sometimes perform many more signatures than they should.
A request for you to review …
-
panprog
medium
# PythOracle `commit()` function doesn't require (nor stores) pyth price publish timestamp to be after the previous commit's publish timestamp, which makes it possible to manipulate p…
-
Bauchibred
medium
# StableOracleWBTC use BTC/USD chainlink oracle to price WBTC which is problematic if WBTC depegs
## Summary
The StableOracleWBTC contract utilizes a BTC/USD Chainlin…
-
# Lines of code
https://github.com/bunkerfinance/bunker-protocol/blob/752126094691e7457d08fc62a6a5006df59bd2fe/contracts/Oracles/UniswapV2PriceOracle.sol#L23-L48
https://github.com/bunkerfinance/bunk…
-
The encrypted data is not authenticated, thus allowing easy manipulation of the ciphertext with predictable changes to the plaintext. This is especially bad as unauthenticated [AES-CBC](https://en.wik…
-
# Lines of code
https://github.com/code-423n4/2023-12-particle/blob/a3af40839b24aa13f5764d4f84933dbfa8bc8134/contracts/libraries/Base.sol#L183
# Vulnerability details
## Impact
use sqrtRatioX96 f…
-
# Lines of code
https://github.com/code-423n4/2024-05-predy/blob/a9246db5f874a91fb71c296aac6a66902289306a/src/PriceFeed.sol#L46
# Vulnerability details
## Impact
In the `PriceFeed` contract, the p…
-
**Github username:** @abhishekvispute
**Submission hash (on-chain):** 0x3493f3d0fc03c6b5e255a995df2cbb3fc747d107a49d6d7d29f819a21f749724
**Severity:** high
**Description:**
**Description**\
CVG is c…
-
### Description
UCO.OracleChain (lib/archethic/oracle_chain.ex) uses get_uco_price method to retrieve current uco price, however if for some reason the node cant fetch price then returns a hardcode…
-
ArbitraryExecution
high
# `quoteAllAvailablePoolsWithTimePeriod` can be manipulated with low liquidity pools
## Summary
`quoteAllAvailablePoolsWithTimePeriod` can be manipulated with low l…