Skip to content

Issues: code-423n4/2024-08-wildcat-validation

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or ⇧ + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

A borrower cannot prevent the transfer of market tokens if the market allows deposits only when the lenders have valid credentials 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_44_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#326 opened Sep 18, 2024 by c4-bot-1
Market using stETH might still be delinquent after repayDeliquentDebt 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_71_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#319 opened Sep 18, 2024 by c4-bot-10
AccessControlHooks::onQueueWithdrawal do not check market.isHooked allowing anyone to call the function with arbitrary hooksData 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_00_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#304 opened Sep 18, 2024 by c4-bot-6
FixedTermLoanHooks Allows Borrower to Increase Loan Term 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_34_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#297 opened Sep 18, 2024 by c4-bot-10
Malicious Lender Can Block Other Lenders from Withdrawing Funds 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_44_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#292 opened Sep 18, 2024 by c4-bot-6
Incorrect Calculation in _calculateTemporaryReserveRatioBips Function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_07_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#285 opened Sep 18, 2024 by c4-bot-6
Allowed amounts for Deposit, Transfer, and Withdrawal are increasing as the scale factor increases with accumulated interest thus DoS the smaller fund operations 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_15_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#283 opened Sep 18, 2024 by c4-bot-4
Memory Corruption Risk in LibStoredInitCode Due to Scratch Space Overuse 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#279 opened Sep 18, 2024 by c4-bot-1
Deposits/borrows deviate from intended implementation 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_15_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#271 opened Sep 18, 2024 by c4-bot-8
Lack of validation of the FixedTermLoanHooks.setFixedTermEndTime function can lead to unintended behaviour 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_34_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#267 opened Sep 18, 2024 by c4-bot-7
lenders are unable to get full repayment amount 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working πŸ€–_68_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#263 opened Sep 18, 2024 by c4-bot-4
Increasing APR when reserve ratio is zero and borrower uses all the funds moves the account to delinquency 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_08_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#258 opened Sep 18, 2024 by c4-bot-6
Hook deployment is vulnerable to reorg situations 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_40_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#254 opened Sep 18, 2024 by c4-bot-4
Sanctioned Addresses Can Bypass Checks Due to Incorrect Assembly Code 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation πŸ€–_49_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#246 opened Sep 18, 2024 by c4-bot-8
onExecuteWithdrawal hook uses an incorrect function signature definition 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#240 opened Sep 18, 2024 by c4-bot-6
Borrower Can Permanently Invalidate Push Provider Credentials Through Block/Unblock Actions 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_104_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#238 opened Sep 18, 2024 by c4-bot-9
Inconsistent Access Control Allows Known Lenders to Bypass Deposit Restrictions via Transfers 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_44_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#236 opened Sep 18, 2024 by c4-bot-4
Inconsistent Minimum Balance Checks Enable Known Lender Status Bypass via onTransfer function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_55_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#233 opened Sep 18, 2024 by c4-bot-6
No any external functions in HooksFactory are protected by SphereX 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden πŸ€–_primary AI based primary recommendation πŸ€–_38_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#226 opened Sep 18, 2024 by c4-bot-3
Excessive Interest and Fees Due to Multiple Repayments 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden πŸ€–_primary AI based primary recommendation πŸ€–_10_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#218 opened Sep 18, 2024 by c4-bot-10
Accounts blocked from deposits can ultimately mimic the exact state as a depositor 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#208 opened Sep 17, 2024 by c4-bot-9
Inconsistent Behavior in Temporary Reserve Ratio Calculation After Interest Rate Changes 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_07_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#200 opened Sep 17, 2024 by c4-bot-8
The reserveRatioBips will be incorrect if a market APR is reduced again two weeks after the initial reduction of over 25% 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden πŸ€–_12_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#198 opened Sep 17, 2024 by c4-bot-1
Reserved assets for withdrawals can be lower than they should 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working πŸ€–_99_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#188 opened Sep 17, 2024 by c4-bot-8
The APR can neither be increased nor locked if the market becomes delinquent following a reduction of over 25% in APR 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working edited-by-warden πŸ€–_12_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#182 opened Sep 17, 2024 by c4-bot-5
ProTip! Type g p on any issue or pull request to go back to the pull request listing page.