-
# Lines of code
https://github.com/code-423n4/2024-04-renzo/blob/main/contracts/Withdraw/WithdrawQueue.sol#L158
# Vulnerability details
## Cause
`WithdrawQueue`'s [`getAvailableToWithdraw` func…
-
# Lines of code
https://github.com/decentxyz/decent-bridge/blob/7f90fd4489551b69c20d11eeecb17a3f564afb18/src/DcntEth.sol#L20-L21
# Vulnerability details
## Impact
The `DcntEth.setRouter()` functio…
-
almurhasan
high
# user/MEV can frontrun and backrun the oracle update of an rETH price and steal funds from the protocol(Possible arbitrage from oracle price discrepancy )
## Summary
The problem i…
-
# Lines of code
https://github.com/code-423n4/2024-04-dyad/blob/main/src/core/VaultManagerV2.sol#L143
# Vulnerability details
## Impact
To prevent flash loan attacks, the `VaultManagerV2::deposit`…
-
jokr
medium
# Liquidators can prevent users from making their positions healthy during an unpause
## Summary
The Perpetual protocol admins can pause the whole system or a specific market on emerge…
-
# Lines of code
https://github.com/code-423n4/2024-04-dyad/blob/cd48c684a58158de444b24854ffd8f07d046c31b/src/core/VaultManagerV2.sol#L134-L153
https://github.com/code-423n4/2024-04-dyad/blob/cd48c684…
-
# Lines of code
https://github.com/code-423n4/2024-04-dyad/blob/4a987e536576139793a1c04690336d06c93fca90/src/core/VaultManagerV2.sol#L119
# Vulnerability details
## Impact
As anyone can deposit f…
-
# Lines of code
https://github.com/code-423n4/2024-04-dyad/blob/4a987e536576139793a1c04690336d06c93fca90/src/core/VaultManagerV2.sol#L172-L181
https://github.com/code-423n4/2024-04-dyad/blob/cd48c684…
-
# Lines of code
https://github.com/code-423n4/2024-03-acala/blob/main/src/modules/incentives/src/lib.rs#L230
https://github.com/code-423n4/2024-03-acala/blob/main/src/modules/incentives/src/lib.rs#L2…
-
ZanyBonzy
medium
# Stablecoin blocklist feature is ineffective
## Summary
The blocklist feature on the stablecoin doesn't prevent users from sending/receiving tokens defeating the purpose of…