Payouts
1st Places
2nd Places
3rd Places
All
Code4rena
Apr '22
high
Existing user’s locked JPEG could be overwritten by new user, causing permanent loss of JPEG funds
high
`StrategyPUSDConvex.balanceOfJPEG` uses incorrect function signature while calling `extraReward.earned`, causing the function to unexpectedly revert everytime
high
Controller: Strategy migration will fail
medium
The noContract modifier does not work as expected.
medium
Chainlink pricer is using a deprecated API
Mar '22
high
Reliance on lifiData.receivingAssetId can cause loss of funds
medium
Swap functions are Reenterable
medium
`AnyswapFacet` can be exploited to approve arbitrary tokens.
medium
[WP-H7] Infinite approval to an arbitrary address can be used to steal all the funds from the contract
medium
cBridge integration fails to send native tokens
medium
Anyone can get swaps for free given certain conditions in `swap`.
medium
`msg.value` is Sent Multipletimes When Performing a Swap