Payouts
Top 10
Top 25
Top 50
All
Sherlock
Code4rena
CodeHawks
Mar '24
Feb '24
Jan '24
Dec '23
Nov '23
Sep '23
Aug '23
Jul '23
high
Sandwich attack to steal all ERC-20 tokens in the Fees contract
high
[H-04] Lender#buyLoan - Malicious user could take over a loan for free without having a pool because of wrong access control
high
Attacker can steal a loan's collateral and break the protocol
high
Fee on transfer tokens will cause users to lose funds
high
update() not getting called right after a WETH amount has been sent will cause users to lose staking rewards
medium
The `borrow` and `refinance` functions can be front-run by the pool lender to set high interest rates
medium
If a borrower or lender got blacklisted by asset contract, their collateral or loan funds can be permanently frozen with the pool
medium
No expiration deadline leads to losing a lot of funds
gas
Cannot use `_burn` Function in Beedle.sol Contract
Apr '23
Mar '23