Payouts
1st Places
2nd Places
Top 10
All
Code4rena
Jul '22
May '22
high
DoS: Blacklisted user may prevent `withdrawExcessRewards()`
medium
amount requires to be updated to contract balance increase (1)
medium
Owner of a pool may prevent any taxes being withdrawn
medium
DoS: Attacker may significantly increase the cost of `withdrawExcessRewards()` by creating a significant number of excess receipts
medium
Centralisation Risk: Owner may abuse the tax rate to claim 99.9% of pools
medium
Merkle leaves are the same length as the parents that are hashed
medium
`MerkleDropFactory.depositTokens()` does not require the tree to exist
Apr '22