-
Notifications
You must be signed in to change notification settings - Fork 4
Issues: sherlock-audit/2024-09-predict-fun-judging
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
ivanonchain - Updating protocolFeeBasisPoints Invalidate Existing Proposals, Leading to Denial of Service in the matchProposals function
Sponsor Disputed
The sponsor disputed this issue's validity
#328
opened Oct 7, 2024 by
sherlock-admin2
Albort - Order of Operations in Batch Refinancing
Sponsor Disputed
The sponsor disputed this issue's validity
#326
opened Oct 7, 2024 by
sherlock-admin2
wickie - Malicious lenders can set the minimum duration of the loan to 0 or close to 0 and use the `The sponsor disputed this issue's validity
call()
function to force borrowers to either default or pay high interest rates.
Sponsor Disputed
#325
opened Oct 7, 2024 by
sherlock-admin4
mrKaplan - The sponsor disputed this issue's validity
matchProposals
function will revert while a proposal (borrowRequest/loanOffer
) has less than 10% remaining value.
Sponsor Disputed
#324
opened Oct 7, 2024 by
sherlock-admin3
yaioxy - The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
auction
function does not check if collateral amount > debt + protocol fee
Sponsor Confirmed
#323
opened Oct 7, 2024 by
sherlock-admin2
web3tycoon - while filling accepting offer and order
Sponsor Disputed
The sponsor disputed this issue's validity
#322
opened Oct 7, 2024 by
sherlock-admin4
smbv-1923 -
whenNotPaused()
modifier not checked during call()
which creates problem
#321
opened Oct 7, 2024 by
sherlock-admin3
BZ - Insufficient Collateralization Ratio Check Leading to Potential Undercollateralized Loans
Sponsor Disputed
The sponsor disputed this issue's validity
#320
opened Oct 7, 2024 by
sherlock-admin2
ivanonchain - Uninitialized minimumOrderFeeRate Allows Bypassing Minimum Fee Requirement in acceptLoanOfferAndFillOrder Function
Sponsor Disputed
The sponsor disputed this issue's validity
#319
opened Oct 7, 2024 by
sherlock-admin4
nikhilx0111 - incorrect check in acceptloanofferandfillorder will cause the function to revert when the borrower is buying the last loan
Sponsor Disputed
The sponsor disputed this issue's validity
#317
opened Oct 7, 2024 by
sherlock-admin4
0xShoonya - Incorrect Handling of Final and Partial Loan Fulfillment Amounts in The sponsor disputed this issue's validity
_assertFulfillAmountNotTooLow
Function
Sponsor Disputed
#316
opened Oct 7, 2024 by
sherlock-admin3
dhank - A lender can lend 0 amount of LOAN_TOKEN to lock borrowOffer 's remaining collatteral amount.
Sponsor Disputed
The sponsor disputed this issue's validity
#315
opened Oct 7, 2024 by
sherlock-admin2
anonymousjoe - Collateral token and Loan token(USDC) decimals could be different leading to incorrect collateralization ratio checks
Sponsor Disputed
The sponsor disputed this issue's validity
#314
opened Oct 7, 2024 by
sherlock-admin4
0xAadi - Static Collateral Checks in The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
matchProposals()
Prevent Borrowers from Utilizing Updated/Improved Collateralization Ratios After a Partial Fulfillment
Sponsor Confirmed
#313
opened Oct 7, 2024 by
sherlock-admin3
Aycozzynfada - Malicious user can front-run refinancing to cause DOS
Sponsor Disputed
The sponsor disputed this issue's validity
#312
opened Oct 7, 2024 by
sherlock-admin2
Bluedragon - Borrower Receives Less Than Expected Loan Amount Due to Protocol Fee Deduction
Sponsor Disputed
The sponsor disputed this issue's validity
#311
opened Oct 7, 2024 by
sherlock-admin4
0xlucky - Improper and outdated check of valid signature for wallet address like Multisig wallet is there.
Sponsor Disputed
The sponsor disputed this issue's validity
#310
opened Oct 7, 2024 by
sherlock-admin3
Ragnarok - Incorrect Implementation of InterestLib::pow causes underestimated Debt calculation
Sponsor Disputed
The sponsor disputed this issue's validity
#309
opened Oct 7, 2024 by
sherlock-admin2
ivanonchain - Incorrect Handling of Tokens with Different Decimals Causes Miscalculations in Debt and Interest Calculations
Sponsor Disputed
The sponsor disputed this issue's validity
#308
opened Oct 7, 2024 by
sherlock-admin4
web3tycoon - Denial of Service Attack due to The sponsor disputed this issue's validity
reverting
if borrower
has turned off AutoRefinancing
Sponsor Disputed
#307
opened Oct 7, 2024 by
sherlock-admin3
MaslarovK - The protocol can change the minimumOrderFeeRate after a loan offer has been created but before it has been accepted.
Sponsor Disputed
The sponsor disputed this issue's validity
#306
opened Oct 7, 2024 by
sherlock-admin2
anonymousjoe - The The sponsor disputed this issue's validity
loan.amount
can be greater than the collateral.amount
leading to less than 100% collateralization ratio
Sponsor Disputed
#305
opened Oct 7, 2024 by
sherlock-admin4
wickie - Malicious borrower can arbitrage with acceptLoanOfferAndFillOrder()
Sponsor Disputed
The sponsor disputed this issue's validity
#304
opened Oct 7, 2024 by
sherlock-admin3
MaslarovK - 'hashProposal' function will lead to wrong hash due to a wrong The sponsor acknowledged this issue is valid
Will Fix
The sponsor confirmed this issue will be fixed
questionId
type in the abi.encode
Sponsor Confirmed
#303
opened Oct 7, 2024 by
sherlock-admin2
nikhilx0111 - a malicious user can grief the protocol
Sponsor Disputed
The sponsor disputed this issue's validity
#302
opened Oct 7, 2024 by
sherlock-admin4
Previous Next
ProTip!
Find all open issues with in progress development work with linked:pr.