https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/5bf43d87-5283-4095-8973-458c35d31bf6.jpg

anshujalan

Security Researcher

Software Engineer @plenty_network. Expertise in Solidity and Defi protocols. Lately, venturing into ZK and smart contract security

Contact Me

High

3

Total

Medium

4

Total

$50.00

Total Earnings

#2092 All Time

2x

Payouts

All

Code4rena

Jan '24

Curves

Curves

41.8 USDC • 7 total findings • Code4rena • anshujalan

#68

high

Whitelised accounts can be forcefully DoSed from buying curveTokens during the presale

high

Unrestricted claiming of fees due to missing balance updates in `FeeSplitter`

high

Unauthorized Access to setCurves Function

medium

Protocol and referral fee would be permanently stuck in the Curves contract when selling a token

medium

onBalanceChange causes previously unclaimed rewards to be cleared

medium

Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.

medium

Withdrawing with amount = 0 will forcefully set name and symbol to default and disable some functions for token subject

reNFT

reNFT

8.62 USDC • Code4rena • anshujalan

#63