https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_6.png

jayjoshix

Auditor

security researcher

Contact Me

High

8

Total

Medium

14

Total

$1.72K

Total Earnings

#1224 All Time

11x

Payouts

bronze

1x

3rd Places

regular

3x

Top 10

regular

5x

Top 25

All

Sherlock

Cantina

Immunefi

Nov '25

stNXM by EaseDeFi

stNXM by EaseDeFi

10.17 USDC • 2 total findings • Sherlock • jayjoshix

#34

high

Exchange Rate Manipulation via Uniswap V3 Spot Price Dependency in LP Valuation

high

Owner Can Steal Vault Funds via removeTokenIdAtIndex Accounting Manipulation

Inverse Finance - Junior Tranche

Inverse Finance - Junior Tranche

12.54 USDC • 1 total finding • Sherlock • jayjoshix

bronze

medium

JDola ERC-4626 `max*` Functions Do Not Account for Internal Vault Limits

Audit Comp | Firelight

Audit Comp | Firelight

16 USDC • 1 total finding • Immunefi • jayx

#20

medium

Finding not yet public.

Oct '25

Index Fun Order Book

Index Fun Order Book

43.38 USDC • 1 total finding • Sherlock • jayjoshix

#12

medium

Integer Division Rounding Enables Free Token Theft in Token Swaps

Saffron Fixed Income Vaults

Saffron Fixed Income Vaults

30.92 USDC • Sherlock • jayjoshix

#36

Avon-Contracts

Avon-Contracts

0.02 USDC • 1 total finding • Cantina • jayx

#39

medium

Finding not yet public.

Sep '25

Super DCA Liquidity Network

Super DCA Liquidity Network

292.97 OP • 6 total findings • Sherlock • jayjoshix

#4

high

Attacker can zero out pending staking rewards through minimal stake manipulation

high

Multiple Pools Drain Staking Rewards via Missing Canonical Pool Enforcement

high

Per-Trade Epoch Anchoring Enables 100% Cashback Overpayment via Timing Manipulation

medium

First staker after idle period captures all emissions from zero‑stake interval

medium

Retroactive Mint Rate Application Violates Global Emission Rate Integrity

medium

Hard-coded 6-Decimal Assumption Causes Catastrophic Reward Miscalculation on BNB Chain

BMX Deli Swap

BMX Deli Swap

297.49 USDC • 2 total findings • Sherlock • jayjoshix

#10

high

Incentive Front-Loading Due to Incorrect Time Reference in Reward Accrual

medium

Fee Under-Collection in Exact-Output Swaps with Fee-from-Output

Ammplify

Ammplify

38.20 USDC • 3 total findings • Sherlock • jayjoshix

#57

medium

Ineffective transferVaultBalance Function Cannot Migrate Real Vault Balances

medium

NFTManager tokenURI() Reverts Due to Incorrect Diamond Storage Access

medium

ViewWalker Cross-Assignment Bug Causes Incorrect Fee Calculations

Aug '25

USG - Tangent

USG - Tangent

374.10 USDC • 4 total findings • Sherlock • jayjoshix

#27

high

Unauthorized Access via Spoofed ControlTower Authorization

medium

WUSR Mint Function Overcredits Users Due to Misuse of ERC4626 `previewMint

medium

Missing receive() Functions Break ETH Zap Functionality

medium

Reward Backlog Accumulation Bug Allows First Stakers After Idle Periods to Steal Rewards

kuru-contracts

kuru-contracts

605.39 USDC • 1 total finding • Cantina • jayx

#31

high

Finding not yet public.