issues
search
code-423n4
/
2024-06-vultisig-findings
2
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Burning functionality is missing in Vultisig contract
#230
howlbot-integration[bot]
closed
4 months ago
2
Inconsistency in Token Burn Functionality of `Vultisig` Contract
#229
howlbot-integration[bot]
closed
4 months ago
2
VULT lacks burn function
#228
howlbot-integration[bot]
closed
4 months ago
2
Token Claim Issue in Pool Contract: Improper Distribution Leaves Pool Empty
#227
howlbot-integration[bot]
closed
4 months ago
2
`feeTaker` can receive more than actual fees when `claim(...)` is called
#226
howlbot-integration[bot]
closed
4 months ago
2
`ILOPool::claim` incorrectly re-adds fees to the caller's rewards, which can cause users to receive rewards owed to others, or DoS due to underflow
#225
howlbot-integration[bot]
closed
4 months ago
2
Vultisig should be burnable
#224
howlbot-integration[bot]
opened
4 months ago
6
M-1 There is no external function `burn()` in the VULT contract
#223
howlbot-integration[bot]
closed
4 months ago
2
Internal _burn() function is not exposed externally in the Vultisig.sol contract
#222
howlbot-integration[bot]
closed
4 months ago
2
`Whitelist._maxAddressCap` can be bypassed when claiming `$VULT` tokens
#221
howlbot-integration[bot]
closed
4 months ago
2
Position owner may not receive accumulated LP fees when they claim liquidity
#219
howlbot-integration[bot]
closed
4 months ago
3
Incorrect fee distribution in `claim()`
#218
howlbot-integration[bot]
closed
4 months ago
2
Improper fee distribution mechanism in the `ILOPool.claim()` function.
#217
howlbot-integration[bot]
closed
4 months ago
2
The fees for the `FEE_TAKER` are not calculated correctly in the [ILOPool.claim](https://github.com/code-423n4/2024-06-vultisig/blob/0957ff9e50441cd6de6b4f6e28c7ea93f5cffa85/src/ILOPool.sol#L184-L261) function
#216
howlbot-integration[bot]
closed
4 months ago
2
ILOPool::claim : The amount transfered to the feeTaker is incorrect, which causes the claim function to revert
#215
howlbot-integration[bot]
closed
4 months ago
2
ILOPool.claim Sends Excess Fees to FEE_TAKER
#214
howlbot-integration[bot]
closed
4 months ago
2
Investors in an ILOPool can lose out on their share of LP position Fees earned from Uniswap V3
#213
howlbot-integration[bot]
closed
4 months ago
2
`claim` function incorrectly assumes that `amount0` and `amount1` returned by `UniswapV3Pool.burn` function exclude swap fees that LP is entitled to
#212
howlbot-integration[bot]
closed
4 months ago
3
Any subsequent `claim()` after first `claim()` will receive incorrect amount of tokens even could lead to revert operation
#211
howlbot-integration[bot]
closed
4 months ago
2
QA Report
#210
howlbot-integration[bot]
closed
4 months ago
1
QA Report
#209
howlbot-integration[bot]
closed
4 months ago
1
QA Report
#208
howlbot-integration[bot]
closed
4 months ago
1
QA Report
#207
howlbot-integration[bot]
closed
4 months ago
1
QA Report
#206
howlbot-integration[bot]
closed
4 months ago
1
QA Report
#205
howlbot-integration[bot]
opened
5 months ago
2
QA Report
#204
howlbot-integration[bot]
opened
5 months ago
2
QA Report
#203
howlbot-integration[bot]
opened
5 months ago
2
User who is not whitelisted can still buy VULT token from Uniswap pool
#202
howlbot-integration[bot]
closed
5 months ago
2
0 slippage for pool launch could lead to DoS
#201
howlbot-integration[bot]
closed
5 months ago
2
sqrtPriceX96 can change over time affecting project initialization
#200
howlbot-integration[bot]
closed
5 months ago
1
Project launch is vulnerable to DoS attack
#199
howlbot-integration[bot]
closed
5 months ago
1
Launch of the ILOPool can be reverted due to strict require statement
#198
howlbot-integration[bot]
closed
5 months ago
1
Project will be unable to launch if any one of the ILOPool launch fails/reverts
#197
howlbot-integration[bot]
closed
5 months ago
1
`checkWhitelist()` function does not revert when the checked address is not whitelisted
#196
howlbot-integration[bot]
closed
5 months ago
1
Missing null value check allows not whilisted users to buy VULT tokens from the pool
#195
howlbot-integration[bot]
closed
5 months ago
1
Investor can mint multiple nfts and bypass maxCapPerUser because of wrong validation
#194
howlbot-integration[bot]
closed
5 months ago
1
Non whitelisted user can bypass `checkWhitelist()`
#193
howlbot-integration[bot]
closed
5 months ago
2
`Whitelist.sol#checkWhitelist` function may return true for not whitelisted account when `_allowedWhitelistIndex` is bigger than zero.
#192
howlbot-integration[bot]
closed
5 months ago
1
Newly created project with new uni-swap pool could fail on launch leading locking of user funds
#191
howlbot-integration[bot]
closed
5 months ago
1
Use of slot0 is easy to manipulate
#190
howlbot-integration[bot]
closed
5 months ago
1
Missing slippage/deadline checks in claim function in ILOPool
#189
howlbot-integration[bot]
closed
5 months ago
2
When one of the ILOPool launch functions revert, the ILOManager launch function should not revert
#188
howlbot-integration[bot]
closed
5 months ago
1
Unimplemented blacklistedCount Functionality
#187
howlbot-integration[bot]
closed
5 months ago
2
Anyone Can Purchase Without Being Whitelisted Due to Incorrect Access Control
#186
howlbot-integration[bot]
closed
5 months ago
1
ILOPool can be blocked from ever launching if sqrtPriceX96 changes after launch
#185
howlbot-integration[bot]
closed
5 months ago
1
Adversaries can manipulate sqrtPriceX96 in an empty UniswapV3 pool and use single-sided liquidity to block the project launches
#184
howlbot-integration[bot]
closed
4 months ago
12
Maximum cap per user can be bypassed in a whitelist-only ILO
#183
howlbot-integration[bot]
closed
5 months ago
1
[M-04] - Hard-coded 5% slippage isn't optimal
#182
howlbot-integration[bot]
closed
5 months ago
1
Flaw in Whitelist.sol: Unauthorized Users Can Bypass Whitelist Check and Receive Funds
#181
howlbot-integration[bot]
closed
5 months ago
2
UniswapV3 `slot0` should not be used as it can be manipulated.
#180
howlbot-integration[bot]
closed
5 months ago
1
Next