code-423n4 / 2021-06-pooltogether-findings

0 stars 0 forks source link

Uneven use of events #78

Open code423n4 opened 3 years ago

code423n4 commented 3 years ago

Handle

JMukesh

Vulnerability details

Impact

To track off-chain data it is necessary to use events

Proof of Concept

In ATokenYieldSource.sol, IdleYieldSource.sol, yearnV2yieldsource : events are emmitted in supplyTokenTo(), redeemToken() sponsor(), but not in BadgerYieldsource.sol and shushiyieldsource.sol

Tools Used

Manual analysis

Recommended Mitigation Steps

use events