Payouts
Top 10
Top 25
Top 50
All
Sherlock
Code4rena
CodeHawks
Sep '24
Jul '24
May '24
high
Malicious User can call `lockOnBehalf` repeatedly extend a users `unlockTime`, removing their ability to withdraw previously locked tokens
high
Invalid validation allows users to unlock early
medium
Missing disapproval check in `LockManager.sol::approveUSDPrice` allows simultaneous approval and disapproval of a price proposal
Apr '24
Feb '24
Jan '24
Dec '23
Oct '23
Sep '23
Jul '23
high
Sandwich attack to steal all ERC-20 tokens in the Fees contract
high
[H-04] Lender#buyLoan - Malicious user could take over a loan for free without having a pool because of wrong access control
high
Using forged/fake lending pools to steal any loan opening for auction
low
Lender fails to giveLoan because of inconsistent length between `loadIds` and `poolIds`
low
Wrong Amount of Loan Interest is Calculated
Jun '23