https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_0.png

7

Security Researcher

Contact Me

High

4

Total

Medium

6

Total

$1.24K

Total Earnings

#1272 All Time

2x

Payouts

regular

1x

Top 25

regular

2x

Top 50

All

Sherlock

Jul '25

Malda

Malda

10.64 USDC • 2 total findings • Sherlock • 7

#44

medium

WrapAndSupplyOnExtensionMarket() will always revert if the gasFees is set to any positive value in tokenGaterway contract

medium

Rebalancer will not work if the first amount to be added in a new window is > (_maxTransferSize - previous windows transfer size)

Mellow Flexible Vaults

Mellow Flexible Vaults

1,231.11 USDC • 8 total findings • Sherlock • 7

#11

high

Uses asset.balanceOf(address) even in the case of ETH

high

The protocolFees are deducted from the users multiple times for the same period.

high

decrementing `latestEligibleIndex` results in skipping the assets that was supposed to included with latest price

high

users can provide duplicate `signatures` to pass the consensus's threshold limit.

medium

User who is allowed to transfer when the transferWHitelistFlag is set cannot actually transfer.

medium

Attacker can DoS user from redeeming shares if user holds climableShares.

medium

disallowing an asset from a subvault leads to the DoS of `redeemQueue.handleBatch()` Operation.

medium

SignatureRedeemQueue doesnt have receive() fn - Unable to redeem shares in eth