Payouts
1st Places
2nd Places
3rd Places
All
Sherlock
Code4rena
Cantina
Feb '25
high
high
medium
Jan '25
high
high
medium
medium
medium
medium
Nov '24
medium
A malicious lender will cause lending offers to be unmatchable and uncancellable due to a missing check in `DLOImplementation::addFunds()`
medium
A lender can repeatedly change the perpetual status of a fully filled offer, making other offers unmatchable and non-cancelable.
medium
Precision loss leads to locked incentives in `DebitaIncentives::claimIncentives()`
medium
Malicious users will exploit the incentive mechanism rendering it useless
Oct '24
medium
Restored addresses will not be able to take any action on behalf of the profile due to still being marked as compromised
medium
A compromised address will still be able to take action on behalf of the profile after it has been deleted due to an insufficient check in `EthosProfile::verifiedProfileIdForAddress()``