issues
search
code-423n4
/
2024-05-olas-validation
0
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Validate issue at judge's request
#296
CloudEllie
opened
4 months ago
0
QA merge, take 2
#295
CloudEllie
closed
4 months ago
0
QA validation
#294
CloudEllie
closed
4 months ago
0
QA / Gas validation merge
#293
CloudEllie
closed
4 months ago
0
HM validation batch
#292
CloudEllie
closed
4 months ago
0
HM validation - second batch
#291
CloudEllie
closed
4 months ago
0
HM validation, partial
#290
CloudEllie
closed
4 months ago
0
HM validation - stage 1
#289
CloudEllie
closed
4 months ago
0
if `removeNominee` is called then `_getSum` will skip a week in its update
#288
c4-bot-10
opened
4 months ago
0
Lack of Compatibility Checks in Implementation of Upgrades
#287
c4-bot-5
opened
4 months ago
0
Missing check for equal length arrays in `EthereumDepositProcessor`
#286
c4-bot-5
closed
4 months ago
0
Incorrect Mapping Update During Nominee Removal Leads to Inconsistent State
#285
c4-bot-10
closed
4 months ago
0
`pointsSum.slope` Not Updated After Nominee Removal and Votes Revocation
#284
c4-bot-5
opened
4 months ago
0
Insufficient Initialization Verification
#283
c4-bot-5
opened
4 months ago
0
no check on return value of approve
#282
c4-bot-5
opened
4 months ago
0
overestimation of available rewards
#281
c4-bot-10
opened
4 months ago
0
use "safetransfer" instead of transfer
#280
c4-bot-7
opened
4 months ago
0
QA Report
#279
c4-bot-5
closed
4 months ago
0
Mismatch due State Update in reward Claim
#278
c4-bot-7
opened
4 months ago
0
More than 18 decimals are allowed.
#277
c4-bot-4
opened
4 months ago
0
The staking token verification is restricted only to the Olas token, while in the reality it could be any ERC20 token
#276
c4-bot-8
closed
4 months ago
0
Owner changes could not be applied if year changes in the middle of the epoch
#275
c4-bot-3
opened
4 months ago
0
StakingBase: initialize function is frontrunnable
#274
c4-bot-5
closed
4 months ago
0
QA Report
#273
c4-bot-3
closed
4 months ago
0
BlackListed multisig will not be able to withdraw the funds.
#272
c4-bot-3
closed
4 months ago
0
QA Report
#271
c4-bot-10
closed
4 months ago
0
Removed nominee doesn't receive staking incentives for the epoch in which they were removed which is against the intended behaviour
#270
c4-bot-3
opened
4 months ago
0
In WormholeDepositProcessorL1 and WormholeTargetDispenserL2, BRIDGE_PAYLOAD_LENGTH should be 52, not 64
#269
c4-bot-2
closed
4 months ago
0
`withheldToken` logic: total claimed amount can be greater than the emissionsAmount for a target
#268
c4-bot-5
opened
4 months ago
0
Reentrancy vulnerability in StakingNativeToken
#267
c4-bot-9
opened
4 months ago
0
In ArbitrumDepositProcessorL1#_sendMessage, if refundAccount is 0, it is set to Dispenser contract, but the funds can't be used
#266
c4-bot-8
closed
4 months ago
0
In ArbitrumDepositProcessorL1, BRIDGE_PAYLOAD_LENGTH should be 148, not 160
#265
c4-bot-9
closed
4 months ago
0
if amountETHFromServices< accountRewards and topup is non zero, account doesn't receive rewards but it gets deducted from rewards balance
#264
c4-bot-9
closed
4 months ago
0
Removing a nominee can brick the VoteWeighting.sol
#263
c4-bot-4
closed
4 months ago
0
Reentrancy Vulnerability in StakingFactory
#262
c4-bot-8
opened
4 months ago
0
Delegatecall to Destructed Contract in StakingProxy Fallback Function Leads to Unexpected Behavior
#261
c4-bot-3
opened
4 months ago
0
WormholeDepositProcessorL1 never sends cross-chain messages and bridges tokens only to EVM chains
#260
c4-bot-2
opened
4 months ago
0
Tokens bridged to Polygon can get stuck
#259
c4-bot-2
opened
4 months ago
0
GnosisDepositProcessor will never transfer the exact amount of tokens
#258
c4-bot-1
opened
4 months ago
0
Dispenser is unable to control refunded tokens when bridging via Wormhole
#257
c4-bot-1
closed
4 months ago
0
Dispenser is unable to use excess gas refund for Arbitrum bridging
#256
c4-bot-10
closed
4 months ago
0
StakingBase.sol can’t handle fee-on-transfer token
#255
c4-bot-2
closed
4 months ago
0
Service with pending rewards can't unstake even when its more profitable to forgo reward
#254
c4-bot-10
opened
4 months ago
0
The refundAccount could loose fees, in Wormhole tx, if it is multisig wallet.
#253
c4-bot-10
closed
4 months ago
0
Dusting Staking contract can prevent unstaking
#252
c4-bot-1
closed
4 months ago
0
Malicious StakingToken instance can DoS deposits and control min deposit amount
#251
c4-bot-5
opened
4 months ago
0
syncWithheldTokens on Arbitrum could fail to be delivered.
#250
c4-bot-4
opened
4 months ago
0
Staking contract can distribute rewards to multisig without activity
#249
c4-bot-4
opened
4 months ago
0
No access control in "initializeTokenomics" in Tokenomics.sol.
#248
c4-bot-4
opened
4 months ago
0
if the curEpochLen set to the MAX_EPOCH_LENGTH the checkpoint always fail
#247
c4-bot-4
closed
4 months ago
0
Next