issues
search
code-423n4
/
2021-12-yetifinance-findings
0
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Outdated compiler version
#253
code423n4
closed
2 years ago
2
Race condition on ERC20 approval
#252
code423n4
opened
2 years ago
3
`YetiFinanceTreasury.sol#updateTeamWallet()` should implement two-step transfer pattern
#251
code423n4
opened
2 years ago
2
Wrong vesting schedule for YETI mentioned in LockupContract
#250
code423n4
opened
2 years ago
3
long revert messages
#249
code423n4
closed
2 years ago
1
The `permit()` function makes users more susceptible to phishing attacks
#248
code423n4
closed
2 years ago
2
`++i` costs less gass compared to `i++`
#247
code423n4
closed
2 years ago
1
SafeMath with Solidity 0.8
#246
code423n4
opened
2 years ago
2
Deleting a mapping within a struct
#245
code423n4
opened
2 years ago
2
ecrecover 0 address
#244
code423n4
opened
2 years ago
1
Rescue assets in treasury contract
#243
code423n4
opened
2 years ago
2
'wrap' tokens that you are not entitled to
#242
code423n4
closed
2 years ago
2
Multiple unsafe calls in WJLP
#241
code423n4
closed
2 years ago
3
setAddresses should only be callable once
#240
code423n4
opened
2 years ago
3
Unsafe transfer in LPTokenWrapper
#239
code423n4
closed
2 years ago
4
TODOs
#238
code423n4
opened
2 years ago
2
Unsafe transfer in Unpool
#237
code423n4
closed
2 years ago
4
ERC20_8 totalSupply is always 0
#236
code423n4
closed
2 years ago
3
Approve burned YETIToken
#235
code423n4
closed
2 years ago
2
`WJLP.setAddresses()` could potentially be front-run making the contract unsable
#234
code423n4
closed
2 years ago
1
`WJLP.getPendingRewards()` should be aview function
#233
code423n4
opened
2 years ago
1
Possible wrong transfers
#232
code423n4
closed
2 years ago
4
Storage optimization
#231
code423n4
closed
2 years ago
2
CollSurplusPool doesn't verify that the passed `_whitelistAddress` is an actual contract addres
#230
code423n4
opened
2 years ago
2
Unsafe transfer in StabilityPool
#229
code423n4
closed
2 years ago
4
Ownable doesn't allow transferring ownership
#228
code423n4
opened
2 years ago
2
Unsafe transfer in StabilityPool
#227
code423n4
closed
2 years ago
4
Use a two-step process when assigning control over a contract to a different address
#226
code423n4
closed
2 years ago
2
Do not store address and contract interfaces separately as state variables
#225
code423n4
closed
2 years ago
2
GAS: packing structs saves gas
#224
code423n4
opened
2 years ago
2
Missing validation for `_minRatio` in `Whitelist.addCollateral`
#223
code423n4
closed
2 years ago
1
Dangerous `teamWallet` update
#222
code423n4
closed
2 years ago
2
Lack of precision
#221
code423n4
opened
2 years ago
2
prefix operations are cheaper than postfix operations
#220
code423n4
closed
2 years ago
1
No timelock when changing ratio of risky collateral
#219
code423n4
closed
2 years ago
4
Missing of _userUpdate in unwrapFor in WJLP.sol
#218
code423n4
closed
2 years ago
1
No sanity check of safe ratio when adding collateral
#217
code423n4
opened
2 years ago
1
Incorrect logic of _userUpdate in WJLP.sol
#216
code423n4
closed
2 years ago
1
Unbounded number of Collateral
#215
code423n4
closed
2 years ago
1
Unsafe transfer of ERC20 tokens of YetiFinanceTreasury
#214
code423n4
closed
2 years ago
3
Unsafe transfer of ERC20 gains in StabilityPool
#213
code423n4
closed
2 years ago
4
Gas Optimization: Struct layout
#212
code423n4
closed
2 years ago
2
Gas: Unnecessary deadline increase
#211
code423n4
opened
2 years ago
2
Gas: Unnecessary caller != 0 check
#210
code423n4
closed
2 years ago
1
ActivePool unwraps but does not update user state in WJLP
#209
code423n4
opened
2 years ago
1
Wrapped JLP can be stolen
#208
code423n4
opened
2 years ago
2
ERC20 return values not checked
#207
code423n4
closed
2 years ago
3
Wrong `lastBuyBackPrice`
#206
code423n4
opened
2 years ago
2
sYETIToken does not emit Approval event in `transferFrom`
#205
code423n4
opened
2 years ago
3
Fee not decayed if past `decayTime`
#204
code423n4
opened
2 years ago
2
Previous
Next