issues
search
code-423n4
/
2022-06-yieldy-findings
0
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
`LiquidityReserve` may break if underlying token is upgraded to have fees
#306
code423n4
closed
2 years ago
2
Gas Optimizations
#305
code423n4
opened
2 years ago
1
QA Report
#304
code423n4
opened
2 years ago
1
Users will mint 1:1 Liquidity Reserve Token due to zero reward tokens
#303
code423n4
closed
2 years ago
2
QA Report
#302
code423n4
opened
2 years ago
1
QA Report
#301
code423n4
opened
2 years ago
1
[M-02] Capping totalSupply on rebase may result in loss of funds
#300
code423n4
closed
2 years ago
3
QA Report
#299
code423n4
opened
2 years ago
1
`sendWithdrawalRequests()` may be impacted by DAO-related delays
#298
code423n4
closed
2 years ago
2
Gas Optimizations
#297
code423n4
opened
2 years ago
1
Gas Optimizations
#296
code423n4
opened
2 years ago
1
QA Report
#295
code423n4
opened
2 years ago
0
Missing timelocks for critical parameter changing functions
#294
code423n4
closed
2 years ago
2
Gas Optimizations
#293
code423n4
opened
2 years ago
1
Insufficient staking tokens to migrate into new contract
#292
code423n4
opened
2 years ago
2
Unchecked ERC20 `transfer()` of `YIELDY_TOKEN` could lead to loss of claimed funds
#291
code423n4
closed
2 years ago
4
Gas Optimizations
#290
code423n4
opened
2 years ago
0
removeAddress doesn't decrease the contracts.length
#289
code423n4
closed
2 years ago
5
Missing `autoRebase` to swap `TOKE` tokens to reward tokens
#288
code423n4
closed
2 years ago
1
Warmup and cooldown periods do not enforce a full staking epoch
#287
code423n4
closed
2 years ago
1
Unstaking should always rebase to prevent missing out on potential rewards
#286
code423n4
closed
2 years ago
1
[M-01] Cannot set or change curve pool after initialization
#285
code423n4
closed
2 years ago
2
Unstaking reward tokens in liquidity reserve takes longer than it should
#284
code423n4
closed
2 years ago
1
Functions in the `BatchRequests` contract revert for removed contract addresses
#283
code423n4
opened
2 years ago
1
Removal of liquidity from the reserve can be griefed
#282
code423n4
opened
2 years ago
3
No RewardTokens for unstaking in Liquidity Reserve
#281
code423n4
closed
2 years ago
2
Sending batch withdrawal requests can possibly DoS
#280
code423n4
opened
2 years ago
2
instantUnstake function can be frontrunned with fee increase
#279
code423n4
opened
2 years ago
1
Missing rebase when adding and removing liquidity to `LiquidityReserve` leads to receiving incorrect amount of tokens
#278
code423n4
closed
2 years ago
2
QA Report
#277
code423n4
opened
2 years ago
0
Fund migration should trigger a rebase to prevent missing out on potential rewards
#276
code423n4
closed
2 years ago
1
Gas Optimizations
#275
code423n4
opened
2 years ago
0
QA Report
#274
code423n4
opened
2 years ago
0
Gas Optimizations
#273
code423n4
opened
2 years ago
0
User fund lose in addLiquidity() of LiquidityReserve by increasing (totalLockedValue / totalSupply()) to very large number by attacker
#272
code423n4
opened
2 years ago
3
Gas Optimizations
#271
code423n4
opened
2 years ago
0
QA Report
#270
code423n4
opened
2 years ago
0
Gas Optimizations
#269
code423n4
opened
2 years ago
0
QA Report
#268
code423n4
opened
2 years ago
0
QA Report
#267
code423n4
opened
2 years ago
0
If any tokens of `STAKING_TOKEN` are sent to the contract directly, `addRewardsForStakers` can be called as a backrun to take that user's funds and distribute it among stakers.
#266
code423n4
closed
2 years ago
2
Bad `_firstEpochEndTime` could block `rebase()` for a long time.
#265
code423n4
closed
2 years ago
2
`setCurvePool` does not approve the new curve pool to transfer the TOKE_POOL token, making it unusable for its intended purpose.
#264
code423n4
closed
2 years ago
2
Gas Optimizations
#263
code423n4
opened
2 years ago
0
Malicious owner could frontrun a stake transaction with a `setWarmUpPeriod`, permalocking the funds
#262
code423n4
closed
2 years ago
3
QA Report
#261
code423n4
opened
2 years ago
0
No upper limit on `coolDownPeriod` allows funds to be locked
#260
code423n4
closed
2 years ago
2
`_storeRebase()` is called with the wrong parameters
#259
code423n4
opened
2 years ago
1
Gas Optimizations
#258
code423n4
opened
2 years ago
0
QA Report
#257
code423n4
opened
2 years ago
0
Next