Payouts
1st Places
2nd Places
3rd Places
All
Sherlock
Code4rena
Cantina
Immunefi
Hats Finance
Sep '24
Aug '24
Jul '24
Jun '24
May '24
Apr '24
medium
medium
low
low
Mar '24
high
medium
low
Feb '24
Findings not publicly available for private contests.
high
high
medium
medium
Jan '24
Dec '23
Nov '23
4.08 USDC • Code4rena • MohammedRizwan
#30
Oct '23
Sep '23
Aug '23
medium
Missing `deadline` param in `swapExactAmountOut()` allowing outdated slippage and allow pending transaction to be executed unexpectedly.
medium
create methods are suspicious of the reorg attack
medium
Liquidators can be tricked to operate with LiquidationPairs that were deployed using the LiquidationPairFactory but they configured the LiquidationSource as a fake malicious contract
Jul '23
Jun '23
medium
Missing check for active Arbitrum Sequencer
medium
Unhandled chainlink revert would lock price oracle access
medium
approve function can fail for non standard ERC20 tokens like USDT
medium
Use safeTransfer() instead of transfer()
medium
In D3VaultFunding.sol and D3VaultLiquidation.sol contracts, Multiplication after Division can cause larger Precision loss
May '23
medium
Wrong consideration of blockformation period causes incorrect votingPeriod and votingDelay calculations
medium
[M-01] Some functions in Talos contracts does not allow user to supply slippage and deadline, which may cause swap revert
medium
Lack of slippage protection can lead to significant loss of user funds
medium
Protocol fees can become trapped indefinitely inside Talos vault contracts
Apr '23
Mar '23
Feb '23