Payouts
1st Places
Top 10
Top 25
All
Sherlock
Code4rena
Cantina
Sep '25
Collaborative Audit • Sherlock • ParthMandale
Jul '25
medium
May '25
high
high
high
high
high
high
high
medium
Jan '25
high
medium
medium
medium
Dec '24
high
In reality borrowers will not receive Downside Protection in `BorrowLib::withdraw`
high
Strike Price Not Validated Against Strike Percent, Leading to Exploitation Risk
high
`CDS::redeemUSDT` is vulnerable to input price manipulation attack, leading attacker to drain USDT from treasury.
high
DoS in core functionality of the CDS contract due to `CDS::updateDownsideProtected` getting set to arbitrarily large value by a malicious user.
high
Incorrect check in `BorrowLib::getOptionFeesToPay` will never revert the `renewOptions` flow for borrowers, causing a negative impact on the protocol.
high
Borrowers will enjoy the downside protection in `borrowing::withDraw` even after their position's options maturity expires.
high
User will not recive any USDa token in `borrowing::redeemYields`
medium
Liquidation type 1 is prone to underflow Revert DoS.
medium
Underflow revert in `liquidationType1` due to `borrowerDebt` amount being more than the amount of collateral asset deposited.
medium
`Borrowing::_withdraw` updating `lastEventTime` even before calling `calculateCumulativeRate()` which will lead to incorrect calculations and update `lastCumulativeRate`
medium
DoS in Liquidation type 2
medium
Inflated Position Sizing Due to Miscalculation in `sizeDelta` Parameter in `BorrowingLiquidation::liquidationType2`
Sep '24
Aug '24
high
medium
medium
Jul '24
Jun '24
May '24
Mar '24