Skip to content

Issues: code-423n4/2024-08-superposition-validation

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or ⇧ + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

X96 sqrt ratio calculated is wrong whenever (abs_tick & 1) != 0 & (abs_tick & 0x2) != 0 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_27_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#259 opened Sep 13, 2024 by c4-bot-2
Permit2 doesn't allow passing from != msg.sender 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_24_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#246 opened Sep 13, 2024 by c4-bot-1
get_fee_growth_inside in tick.rs should allow for underflow/overflow but doesn't 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_54_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#236 opened Sep 13, 2024 by c4-bot-2
authorised_enablers role Inconsistencies in Pool Management. 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_04_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#203 opened Sep 13, 2024 by c4-bot-7
The get_amounts_for_delta() function at sqrt_price_math.rs is implemented incorrectly. 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden πŸ€–_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#191 opened Sep 13, 2024 by c4-bot-10
OwnershipNFTs do not comply with ERC721, breaking composability 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_56_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#188 opened Sep 13, 2024 by c4-bot-2
Unintended under/overflow of the amount already swapped in/out due to unmatching logic 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#185 opened Sep 13, 2024 by c4-bot-7
Token Amount Discrepancy in swap_2_internal_erc20 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_07_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#184 opened Sep 13, 2024 by c4-bot-4
Front-running vulnerability in pool price setting function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_18_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#161 opened Sep 13, 2024 by c4-bot-9
Incorrect Decoding of Swap Results Leads to Ineffective Slippage Protection 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_14_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#154 opened Sep 13, 2024 by c4-bot-7
Migrations facet is not set in the SeawaterAMM contract 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_23_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#142 opened Sep 12, 2024 by c4-bot-4
Wrong require statement in OwnershipNFT::_onTransferReceived 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_09_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#93 opened Sep 10, 2024 by c4-bot-8
Approvals are not revoked on transfer 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working edited-by-warden πŸ€–_22_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#76 opened Sep 8, 2024 by c4-bot-10
decrPosition09293696 will not work due to incorrect function signature 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_20_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#63 opened Sep 6, 2024 by c4-bot-9
When performing 'swap' and the swap position does not cover 'swap amount', the base price of 'sqrt_price' is set incorrectly. 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_25_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#61 opened Sep 5, 2024 by c4-bot-8
An attacker can create invalid positions to inflate a pool 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_02_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#59 opened Sep 4, 2024 by c4-bot-3
Protocol earnings are permanently lost/locked 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_38_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#54 opened Sep 4, 2024 by c4-bot-6
Min tick has wrong rounding making part of the liquidity range unaccessible 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_08_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#53 opened Sep 4, 2024 by c4-bot-6
Lp's liquidity may be lost if re-org happens 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working sufficient quality report This report is of sufficient quality
#33 opened Aug 30, 2024 by c4-bot-2
Missing update current tick when we call set_sqrt_price_F_F_4_D_B_98_C() 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working sufficient quality report This report is of sufficient quality
#30 opened Aug 30, 2024 by c4-bot-8
Incorrect emergency council update 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_41_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#29 opened Aug 30, 2024 by c4-bot-3
approve() shouldn't be called by the approved address for that tokenId 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_10_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#10 opened Aug 27, 2024 by c4-bot-2
Agreements & Disclosures
#1 opened Aug 21, 2024 by code4rena-id bot
ProTip! Adding no:label will show everything without a label.