Payouts
Top 10
Top 25
Top 50
All
Sherlock
Cantina
CodeHawks
Immunefi
Apr '25
high
high
Mar '25
high
Feb '25
high
Faulty Gauge Weight Update Formula: Voting Power Delta Not Considered Leading to Arithmetic Underflow and Vote Weight Inconsistency
high
ZENO Token Redemption Returns Negligible USDC Amount Compared to Purchase Price
high
Incorrect decimal handling in `Auction::buy()` leads to massive overpayment for ZENO tokens
high
`BaseGauge` users can claim rewards without staking
high
Incorrect Reward Claim Logic in FeeCollector::claimRewards Causes Denial of Service
high
Users can borrow more assets than they have deposited as collateral
high
Any attempt to liquidate a user will fail, because StabilityPool does not hold crvUSD during operational lifecycle
high
Ineffective Time-Weighted Average Implementation in Fee Distribution
high
Users can lose additional collateral by depositing NFTs after grace period expiration
medium
[H-2] Lack of Emergency Pause in `BaseGauge::stake` and `BaseGauge::withdraw
medium
Incorrect utilization rate forces protocol to issue maximum rewards indefinitely
medium
Treasury Contract Deposit Function Can Be Frontrun To Deny Protocol Operations
medium
Liquidations are enabled when repayments are disabled, causing borrowers to lose funds without a chance to repay
medium
closeLiquidation within LendingPool does not allow partial repayments, which can cause massive losses to users within edge case