High
Solo
Total
Medium
Solo
Total
Total Earnings
#70 All Time
Payouts
1st Places
2nd Places
3rd Places
All
Sherlock
Code4rena
Cantina
Immunefi
Hats Finance
Apr '25
medium
removed observers are still able to vote
medium
Refunds retry logic is flawed causing loss of funds
medium
Ballot threshold logic fails to account for tombstoned observers
medium
User is able to DOS and grief node by repeatedly calling deposit
medium
Jailed validators are able to participate in voting
medium
TON transactions risk being lost due to flawed transaction handling
medium
Wrong postGasPrice() implementation can lead to loss of funds
medium
SUI's recipient address remains insufficiently checked upon withdrawal causing DOS and Loss of Funds
medium
User can drain TSS funds
Mar '25
high
high
high
high
medium
low
low
low
low
Feb '25
Collaborative Audit • Sherlock • iammxuse
Jan '25
high
Dec '24
high
medium
medium
medium
medium
medium
Nov '24
medium
Oct '24
high
high
high
high
medium
medium
Sep '24
medium
medium
Aug '24
high
medium
medium
Jul '24
Jun '24
Apr '24
high
Incorrect withdraw queue balance in TVL calculation
high
Withdrawals logic allows MEV exploits of TVL changes and zero-slippage zero-fee swaps
medium
Fetched price from the oracle is not stored in `xRenzoDeposit`
medium
Deposits will always revert if the amount being deposited is less than the bufferToFill value
medium
Price updating mechanism can break
Mar '24
Feb '24
high
Holders array can be manipulated by transferring or burning with amount 0, stealing rewards or bricking certain functions
medium
Malicious users can prevent holders from claiming their rewards during a reward cycle by skipping it.
medium
`LiquidInfrastructureERC20.sol` disapproved holders keep part of the supply, diluting approved holders revenue.