Payouts
3rd Places
Top 10
Top 25
All
Code4rena
Apr '23
Aug '22
medium
Heart will stop if all rewards are swept
medium
Inconsistant parameter requirements between `constructor()` and `Set() functions` in `RANGE.sol` and `Operator.sol`.
medium
[NAZ-M1] Chainlink's `latestRoundData` Might Return Stale Results
medium
Heart::beat() could be called several times in one block if no one called it for a some time
Jul '22
Jun '22
Feb '22
Dec '21
Nov '21
Oct '21
medium
debtWriteOff updates totalFrozen immaturely, thereby losing staker rewards
medium
UserManager: totalStaked ≥ totalFrozen should be checked before and after totalFrozen is updated
medium
Wrong implementation of `CreditLimitByMedian.sol#getLockedAmount()` will lock a much bigger total amount of staked tokens than expected
Sep '21
high
Reentrancy in settleAuction(): malicious publisher can bypass index timelock mechanism, inject malicious index, and rug the basket
medium
licenseFee can be greater than BASE
medium
Fee calculation is potentially incorrect
medium
Use safeTransfer instead of transfer
medium
Fee on transfer tokens can lead to incorrect approval
medium
Unsafe approve would halt the auction and burn the bond