Payouts
1st Places
Top 10
Top 25
All
Sherlock
Code4rena
Cantina
Jan '25
high
medium
medium
medium
Dec '24
high
In reality borrowers will not receive Downside Protection in `BorrowLib::withdraw`
high
Strike Price Not Validated Against Strike Percent, Leading to Exploitation Risk
high
`CDS::redeemUSDT` is vulnerable to input price manipulation attack, leading attacker to drain USDT from treasury.
high
DoS in core functionality of the CDS contract due to `CDS::updateDownsideProtected` getting set to arbitrarily large value by a malicious user.
high
Incorrect check in `BorrowLib::getOptionFeesToPay` will never revert the `renewOptions` flow for borrowers, causing a negative impact on the protocol.
high
Borrowers will enjoy the downside protection in `borrowing::withDraw` even after their position's options maturity expires.
high
User will not recive any USDa token in `borrowing::redeemYields`
medium
Liquidation type 1 is prone to underflow Revert DoS.
medium
Underflow revert in `liquidationType1` due to `borrowerDebt` amount being more than the amount of collateral asset deposited.
medium
`Borrowing::_withdraw` updating `lastEventTime` even before calling `calculateCumulativeRate()` which will lead to incorrect calculations and update `lastCumulativeRate`
medium
DoS in Liquidation type 2
medium
Inflated Position Sizing Due to Miscalculation in `sizeDelta` Parameter in `BorrowingLiquidation::liquidationType2`
Sep '24
Aug '24
high
medium
medium
Jul '24
Jun '24
May '24
Mar '24