Payouts
2nd Places
3rd Places
Top 10
All
Sherlock
Code4rena
Cantina
Oct '24
Sep '24
high
When reListing, Fees are Wrongly also Refunded For Liquidation Listings
high
Incorrect Checkpoint Index Handling When Timestamps Match Between Updates
high
Compounded Factor Miscalculated Due to Improper Interest Rate Scaling
high
L1 to L2 Token Transfers Always Fail Due to Alias Address Check Error
medium
Faulty Exemption Check Prevents Fee Removal and Correct Fee Application in `UniswapImplementation`
medium
Users Can Block the Owner from Executing a Collection Shutdown by Creating Listings
Aug '24
Apr '24
high
After ITO Ends, Users Claimable `$ZVE` Tokens are Prone to Manipulation
high
Revoking a Schedule Will DoS Some Withdrawals
high
Users Never Lose Their Assigned Weight After Their Vesting Schedule is Revoked
medium
`ema` is miscalculated during the first yield distribution
medium
Deposited Rewards Could Be Stuck
medium
Strict Allowance Check Could Brick a Major Functionality in `OCL_ZVE`
Mar '24
high
Feb '24
high
Flaw in Cross-Chain Approval System Raises Risk of Unauthorized Token Transfers
medium
Exercising Options In a destination Chain for Some msg Type is Impossible
medium
Incorrect `tapOft` Amounts Will Be Sent to Desired Chains on Certain Conditions
medium
`mTOFT::wrap` Function, Doesn't Work Rightly When Wrapping Native Tokens
medium
MIssing Admin Setters for `_pause()` and `_unpause()`
medium
Flawed Initialization in `BigBang` Contract: `minMintFeeStart` Exceeds `maxMintFeeStart`
medium
Underflow Vulnerability in `Market::_allowedBorrow` Function: Oversight with Pearlmit Allowance Handling
high
A locked fighter can be transferred; leads to game server unable to commit transactions, and unstoppable fighters
high
Players have complete freedom to customize the fighter NFT when calling `redeemMintPass` and can redeem fighters of types Dendroid and with rare attributes
high
Non-transferable `GameItems` can be transferred with `GameItems::safeBatchTransferFrom(...)`
medium
Fighter created by mintFromMergingPool can have arbitrary weight and element
Jan '24
high
When `DecentBridgeExecutor.execute` fails, funds will be sent to a random address
high
Anyone can update the address of the Router in the DcntEth contract to any address they would like to set.
medium
DecentEthRouter.sol#_bridgeWithPayload() - Any refunded ETH (native token) will be refunded to the DecentBridgeAdapter, making them stuck
Dec '23
high
The userGaugeProfitIndex is not set correctly, allowing an attacker to receive rewards without waiting
high
Anyone can steal all distributed rewards
medium
There is no way to liquidate a position if it breaches maxDebtPerCollateralToken value creating bad debt.
medium
SurplusGuildMinter.getReward() is susceptible to DoS due to unbounded loop
Oct '23
Sep '23
medium
Incorrect source address decoding in RootBridgeAgent and BranchBridgeAgent's _requiresEndpoint breaks LayerZero communication
medium
Message channels can be blocked resulting in DoS
medium
`ArbitrumBranchBridgeAgent::_performFallbackCall` Function Does Not Refund Users Their Excess Native Gas Deposit
Aug '23
high
The settle feature will be broken if attacker arbitrarily transfer collateral tokens to the PerpetualAtlanticVaultLP
high
Users can get immediate profit when deposit and redeem in `PerpetualAtlanticVaultLP`
medium
The RdpxV2Core contract allows anyone to call redeem tokens even if the contract is paused.
medium
User can avoid paying high premium price by correctly timing his bond call
Jul '23
May '23