issues
search
code-423n4
/
2023-06-canto-findings
1
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Arbitrary parameters
#56
code423n4
closed
1 year ago
3
Bypass check with one non-standard denom
#55
code423n4
closed
1 year ago
4
Lack of checks for non-zero values
#54
code423n4
closed
1 year ago
3
`packet.DestinationChannel` IS CHECKED AGAINST THE `WhitelistedChannels`, BUT `packet.SourceChannel` SHOULD BE CHECKED INSTEAD, AS PER THE PROTOCOL DESIGN REQUIREMENTS
#53
code423n4
closed
1 year ago
7
SWAP AMOUNT OF CANTO IS HARDCODED TO `4 Canto` IRRESPECITVE OF THE `Canto` BALANCE OF THE `Recipient`, WHICH COULD BE FURTHER DISADVANTAGEOUS TO THE `Recipient` IF THE CANTO PRICE INCREASES IN THE FUTURE
#52
code423n4
closed
1 year ago
3
Lack of deep validation
#51
code423n4
closed
1 year ago
3
Lack of token pair existence
#50
code423n4
closed
1 year ago
3
Lack of input validation
#49
code423n4
closed
1 year ago
3
Incorrect setting of EthIBCDenom invalidates risk management limits
#48
code423n4
closed
1 year ago
3
Analysis
#47
code423n4
closed
1 year ago
2
QA Report
#46
code423n4
opened
1 year ago
6
Coinswap::Types::Params have a bad configuration for ETH max swap amount
#45
code423n4
closed
1 year ago
3
QA Report
#44
code423n4
closed
1 year ago
1
Hard coding IBC denom may lead to panic in the future
#43
code423n4
closed
1 year ago
4
QA Report
#42
code423n4
closed
1 year ago
1
Calling CreatePool with the parameters of an existing pool, will dos it
#41
code423n4
opened
1 year ago
6
Analysis
#40
code423n4
opened
1 year ago
5
QA Report
#39
code423n4
closed
1 year ago
1
Uniswap k invariant is not checked
#38
code423n4
closed
1 year ago
4
The Swap action will always fail if the value of the deposited IBC asset is less than the value of autoSwapThreshold Canto
#37
code423n4
closed
1 year ago
3
Pre-defined limit is different from the spec.
#36
code423n4
opened
1 year ago
4
If amount sent is smaller than autoSwapThresold, auto-replenishment of CANTO is skipped.
#35
code423n4
closed
1 year ago
2
QA Report
#34
code423n4
opened
1 year ago
1
QA Report
#33
code423n4
closed
1 year ago
1
Doesn’t have proper slippage control.
#32
code423n4
closed
1 year ago
2
Add a check for GetStandardDenom's return value
#31
code423n4
closed
1 year ago
4
`swap.swapCoins` could cause the user send the tokens but doesn't receive 4 canto
#30
code423n4
closed
1 year ago
4
GetPoolByLptDenom function does not check if lptDenom string is valid
#29
code423n4
closed
1 year ago
3
Analysis
#28
code423n4
closed
1 year ago
2
QA Report
#27
code423n4
closed
1 year ago
1
doesn't handle when value of `reservePool` returned is nil
#26
code423n4
closed
1 year ago
3
Analysis
#25
code423n4
closed
1 year ago
2
Onboarding::Types::Params lacks multiple validations
#24
code423n4
opened
1 year ago
8
Better error handling
#23
code423n4
closed
1 year ago
3
Unauthorized Source Channel can trigger the onboarding action
#22
code423n4
closed
1 year ago
2
Analysis
#21
code423n4
opened
1 year ago
5
QA Report
#20
code423n4
opened
1 year ago
1
Logic continues even if swap fails
#19
code423n4
closed
1 year ago
4
Whitelisted channel check uses the destination channel instead of the source channel
#18
code423n4
closed
1 year ago
2
Lack of slippage controll when swapping on the AMM, trough the middleware
#17
code423n4
closed
1 year ago
2
QA Report
#16
code423n4
opened
1 year ago
1
Invalid Validation of Auto Swap Threshold
#15
code423n4
closed
1 year ago
4
QA Report
#14
code423n4
opened
1 year ago
2
Analysis
#13
code423n4
closed
1 year ago
2
QA Report
#12
code423n4
opened
1 year ago
2
Incorrect maxSwapAmount checked
#11
code423n4
closed
1 year ago
4
'Null Pointer' Dereference in 'if len(pairID) == 0' statement
#10
code423n4
closed
1 year ago
3
Liquidity pools can be manipulated at any time via token transfers and generate profit for an exclusive staker
#9
code423n4
closed
1 year ago
9
DefaultMaxSwapAmount is 10x higher than spec for ETH
#8
code423n4
closed
1 year ago
6
Inadequate error handling
#7
code423n4
closed
1 year ago
3
Previous
Next