Payouts
Top 10
Top 25
Top 50
All
Sherlock
Code4rena
Sep '23
Jul '23
Jun '23
high
Both Partys can make `CloseQuote` revert by deallocate their funds and allowing the closing/liquidations to go threw
high
no check for exipred Price Timestamp like in PartyB which can cause price staleness
high
PartyA can control liquidations in `liquidatePartyA`
medium
FeeCollector can get ouf WithdrawCooldown in `receiveTradingFees`
medium
`liquidatePendingPositionsPartyA` dosnt give fee back when PartyA has positions in pending and instead liquidates them which should'nt happen
medium
If liquiation is not called in few blocks/timestmaps PartyB other positions can't be liquidated and funds will stuck in ` liquidatePositionsPartyB`
May '23
high
2 oralces (wbgl,dai) oracle dont work and revert
high
Sandwitch attack will happen because no check on slippage
high
in `getOwnValution` we dont use a twap variable but instead use a not protected manipulates price
high
If `token1=Dai` the rebalance mostly wont work with high USSD value
high
Attackers can control how rebalance happens by changing balances
high
We can profit from public and burn mint function
high
DAI can be overshoot causing a USSD depegg
medium
`LatestRoundata` timestamp is not valiated
Mar '23
Feb '23
Jan '23
high
An attacker can block the contract and cause a dos to users with usdc
high
Since when a loan is cleared rollable=true an attacker can do many diffrent thinks with that like rolling over loan with frontrunning and getting more debt with out paying collateral
medium
Since when a loan is cleared `rollable=true` an attacker can do many diffrent thinks with that like rolling over loan with frontrunning and getting more debt with out paying collateral
Dec '22
Nov '22
Oct '22
Sep '22
Aug '22
Jul '22
Jun '22
May '22
Apr '22