Payouts
3rd Places
Top 10
Top 25
All
Sherlock
Code4rena
CodeHawks
Jul '23
41.06 USDC • 2 total findings • CodeHawks • ayeslick
#50
high
Reentrancy in `USDO.flashLoan()`, enabling an attacker to borrow unlimited USDO exceeding the max borrow limit
high
Ability to steal user funds and increase collateral share infinitely in BigBang and Singularity
medium
BigBang and Singularity should not pause repay() and liquidate()
medium
Cannot use CurveSwapper when calling compound due to mismatched data parameter
medium
`MagnetarV2#burst` double counts `msg.value` for `TOFT_WRAP` operation, making the transaction revert unless the user overpays
medium
all deposit and withdraw function in Convex and Curve nativeLP Strategy, apply slippage on internal pricing; which call real-time on chain price from Curve directly and subject to MEV
Jan '23
Dec '22
Nov '22
Oct '22
Sep '22
Aug '22
Jul '22
Jun '22