-
Notifications
You must be signed in to change notification settings - Fork 0
Issues: code-423n4/2024-08-wildcat-validation
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. Weβll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
A borrower cannot prevent the transfer of market tokens if the market allows deposits only when the lenders have valid credentials
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_44_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#326
opened Sep 18, 2024 by
c4-bot-1
Market using Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_primary
AI based primary recommendation
π€_71_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
stETH
might still be delinquent after repayDeliquentDebt
2 (Med Risk)
#319
opened Sep 18, 2024 by
c4-bot-10
AccessControlHooks::onQueueWithdrawal
do not check market.isHooked
allowing anyone to call the function with arbitrary hooksData
3 (High Risk)
#304
opened Sep 18, 2024 by
c4-bot-6
FixedTermLoanHooks Allows Borrower to Increase Loan Term
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_34_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#297
opened Sep 18, 2024 by
c4-bot-10
Malicious Lender Can Block Other Lenders from Withdrawing Funds
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_44_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#292
opened Sep 18, 2024 by
c4-bot-6
Incorrect Calculation in _calculateTemporaryReserveRatioBips Function
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_07_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#285
opened Sep 18, 2024 by
c4-bot-6
Allowed amounts for Deposit, Transfer, and Withdrawal are increasing as the scale factor increases with accumulated interest thus DoS the smaller fund operations
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_15_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#283
opened Sep 18, 2024 by
c4-bot-4
Memory Corruption Risk in LibStoredInitCode Due to Scratch Space Overuse
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_primary
AI based primary recommendation
sufficient quality report
This report is of sufficient quality
#279
opened Sep 18, 2024 by
c4-bot-1
Deposits/borrows deviate from intended implementation
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_15_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#271
opened Sep 18, 2024 by
c4-bot-8
Lack of validation of the Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_primary
AI based primary recommendation
π€_34_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
FixedTermLoanHooks.setFixedTermEndTime
function can lead to unintended behaviour
2 (Med Risk)
#267
opened Sep 18, 2024 by
c4-bot-7
lenders are unable to get full repayment amount
3 (High Risk)
Assets can be stolen/lost/compromised directly
bug
Something isn't working
π€_68_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#263
opened Sep 18, 2024 by
c4-bot-4
Increasing APR when reserve ratio is zero and borrower uses all the funds moves the account to delinquency
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_primary
AI based primary recommendation
π€_08_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#258
opened Sep 18, 2024 by
c4-bot-6
Hook deployment is vulnerable to reorg situations
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_40_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#254
opened Sep 18, 2024 by
c4-bot-4
Sanctioned Addresses Can Bypass Checks Due to Incorrect Assembly Code
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_primary
AI based primary recommendation
π€_49_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#246
opened Sep 18, 2024 by
c4-bot-8
onExecuteWithdrawal
hook uses an incorrect function signature definition
2 (Med Risk)
#240
opened Sep 18, 2024 by
c4-bot-6
Borrower Can Permanently Invalidate Push Provider Credentials Through Block/Unblock Actions
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_104_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#238
opened Sep 18, 2024 by
c4-bot-9
Inconsistent Access Control Allows Known Lenders to Bypass Deposit Restrictions via Transfers
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_44_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#236
opened Sep 18, 2024 by
c4-bot-4
Inconsistent Minimum Balance Checks Enable Known Lender Status Bypass via Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_55_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
onTransfer
function
2 (Med Risk)
#233
opened Sep 18, 2024 by
c4-bot-6
No any external functions in Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
π€_primary
AI based primary recommendation
π€_38_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
HooksFactory
are protected by SphereX
2 (Med Risk)
#226
opened Sep 18, 2024 by
c4-bot-3
Excessive Interest and Fees Due to Multiple Repayments
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
π€_primary
AI based primary recommendation
π€_10_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#218
opened Sep 18, 2024 by
c4-bot-10
Accounts blocked from deposits can ultimately mimic the exact state as a depositor
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_primary
AI based primary recommendation
sufficient quality report
This report is of sufficient quality
#208
opened Sep 17, 2024 by
c4-bot-9
Inconsistent Behavior in Temporary Reserve Ratio Calculation After Interest Rate Changes
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_07_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#200
opened Sep 17, 2024 by
c4-bot-8
The Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
π€_12_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
reserveRatioBips
will be incorrect if a market APR is reduced again two weeks after the initial reduction of over 25%
2 (Med Risk)
#198
opened Sep 17, 2024 by
c4-bot-1
Reserved assets for withdrawals can be lower than they should
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
π€_99_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#188
opened Sep 17, 2024 by
c4-bot-8
The APR can neither be increased nor locked if the market becomes delinquent following a reduction of over 25% in APR
3 (High Risk)
Assets can be stolen/lost/compromised directly
bug
Something isn't working
edited-by-warden
π€_12_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#182
opened Sep 17, 2024 by
c4-bot-5
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.