issues
search
code-423n4
/
2024-01-opus-findings
0
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Analysis
#142
c4-bot-1
closed
7 months ago
2
QA Report
#141
c4-bot-5
closed
7 months ago
2
yang can be permanently suspended even if the SUSPENSION GRACE PERIOD has not elapsed
#140
c4-bot-2
closed
7 months ago
7
Immediate Lowering of Yang Threshold Could Lead to Arbitrage Opportunities for Bots and Lost of User Funds
#139
c4-bot-3
closed
7 months ago
4
QA Report
#138
c4-bot-1
opened
8 months ago
2
`shrine.get_threshold_and_value` function might use invalid assets prices
#137
c4-bot-3
closed
7 months ago
3
`seer.update_prices` function might enforce updating to an invalid collateral prices and risking users troves health
#136
c4-bot-5
closed
7 months ago
3
`abbot.open_trove` function lacks slippage protection
#135
c4-bot-2
closed
7 months ago
5
Return value of yin transfer not checked during yin allocation
#134
c4-bot-3
closed
7 months ago
9
QA Report
#133
c4-bot-10
closed
7 months ago
2
Analysis
#132
c4-bot-10
opened
8 months ago
2
QA Report
#131
c4-bot-9
closed
7 months ago
2
Under-Collateralization of Yins Prior to Complete User Reclamation
#130
c4-bot-1
closed
7 months ago
4
Absorber is Susceptible to Flash Loan Attacks to Steal Yield
#129
c4-bot-3
closed
7 months ago
7
Absence of slippage protection || mechanism in the Absorber.provide() would lead to MEV Based Attacks.
#128
c4-bot-5
closed
7 months ago
3
acess control mechanism absent for set_threshold(...) function
#127
c4-bot-5
closed
7 months ago
4
Analysis
#126
c4-bot-1
opened
8 months ago
3
Users can be Unfairly Punished for Failures External to them, such as Delays in Transaction Processing or Sequencer Crashes.
#125
c4-bot-4
closed
7 months ago
6
QA Report
#124
c4-bot-10
closed
7 months ago
5
ERC777 reentrancy allows attacker to drain reward in Absorber
#123
c4-bot-7
closed
7 months ago
6
Duplicated recipients can override `percentages[recipient]` and lead to incorrect allocation
#122
c4-bot-9
closed
7 months ago
8
Borrowing and Repaying Yin within 30 Minutes Doesn't Incur Interest
#121
c4-bot-4
closed
7 months ago
9
Incorrect break condition in the `redistribute_helper()` could cause liquidation to fail
#120
c4-bot-7
closed
7 months ago
8
When `redistribute_helper()` skip over a zero yang, `new_yang_totals` was not appended cause wrong update for trove yang balances
#119
c4-bot-6
closed
7 months ago
4
The `withdraw_helper()` function incorrectly updates `new_trove_balance` because it uses `trove_balance` before calling the `charge()` function
#118
c4-bot-2
closed
7 months ago
4
The `get_shrine_health()` function does not account for unaccrued interest
#117
c4-bot-10
closed
7 months ago
4
The `provide()` function does not reset withdrawal requests, allowing an attacker to bypass risk-free yield tactics protection
#116
c4-bot-8
opened
8 months ago
11
An attacker could manipulate debt exceptional redistribution because it is allowed to deposit into any trove
#115
c4-bot-3
opened
8 months ago
10
Analysis
#114
c4-bot-4
closed
7 months ago
2
Budget Inaccuracy in Equalizer
#113
c4-bot-5
closed
7 months ago
5
Incorrect interest accrual during withdraw
#112
c4-bot-6
closed
7 months ago
4
Stale Prices From the Seer
#111
c4-bot-8
closed
7 months ago
6
Rewards are incorrectly calculated in `Absorber` if the epoch changes
#110
c4-bot-1
closed
7 months ago
5
Forced Liquidation through asset deposit
#109
c4-bot-1
closed
7 months ago
6
Griefing attack by directly sending asset tokens to prevent Sentinel from a valid enter operation
#108
c4-bot-8
closed
7 months ago
5
Breaking of conversion rate properties in the gate module
#107
c4-bot-1
closed
7 months ago
4
Debt from a liquidated trove may not be redistributed due to an issue inside the function `shrine.redistribute_helper()`
#106
c4-bot-8
closed
7 months ago
6
QA Report
#105
c4-bot-9
closed
7 months ago
3
The last user will get 1% of collateral instead of 100% in `Caretaker`
#104
c4-bot-6
closed
7 months ago
4
User can lose funds
#103
c4-bot-6
closed
7 months ago
7
Function `compound()` should take the redistribution event into account when calculating the debt after interest charged
#102
c4-bot-9
closed
7 months ago
4
Purger uses stale asset price for liquidations
#101
c4-bot-5
closed
7 months ago
3
Kill shrine leads to loss of unpudlled exceptional redistributed yangs
#100
c4-bot-9
closed
7 months ago
8
Protocol won't work with tokens with decimals greater than `WAD_DECIMALS`
#99
c4-bot-1
closed
7 months ago
4
QA Report
#98
c4-bot-7
opened
8 months ago
3
It's not possible to update spot price of yin
#97
c4-bot-9
closed
7 months ago
3
It's possible to repay a specified amount of synthetic even when Shrine is killed
#96
c4-bot-4
closed
7 months ago
3
Lack of verification if Shrine is killed in `redistribute()` function
#95
c4-bot-4
closed
7 months ago
3
Lack of verification if Shrine is killed in `seize()` function
#94
c4-bot-3
closed
7 months ago
3
Withdraw function does not correctly check the position's health
#93
c4-bot-3
closed
7 months ago
5
Previous
Next