
Payouts

Top 10

Top 25

Top 50
All
Sherlock
Code4rena
Cantina
Nov '25
Oct '25
high
`set_invocation_costs_config()` fails to authorize admin allowing anyone to set invocation costs
medium
Systematic Overcharge in prices and x_prices: Fee Charged for Requested Records While Return is Capped at 20
medium
Expiration vector length mismatch causes panic in extend_ttl() when assets are added with zero initial expiration period
medium
`twap()` under-charges for multi-period queries due to hardcoded `periods=1`
Sep '25
high
Malicious pool address allows complete drainage of Diamond contract funds
high
Protocol will under-credit compounding maker fees to liquidity providers
high
Protocol users will experience unintended liquidity operations on neighboring positions
medium
Unfair principal slashing when burning via NFT (JIT penalty mis-trigger)
medium
NFT mints block after 16 assets due to NFTManager ownership
medium
Sole compounding makers will have funds permanently locked when attempting full withdrawal
medium
Timed ownership transfer mechanism permanently blocks governance operations
Aug '25
high
high
`GTELaunchpadV2Pair::burn` over-estimates distribution amounts when there are non-zero accrued launchpad fees
high
Total reward shares for token can reach zero after unlocking, causing `GTELaunchpadV2Pair` to be bricked
medium
`LaunchToken` transfers cause staking rewards to be lost to the `LaunchPad`
high
Jul '25
medium
medium
high
medium
medium
Jun '25
high
May '25
high
high
medium