This repository has been archived by the owner on May 26, 2023. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 0
Issues: sherlock-audit/2022-11-isomorph-judging
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
ak1 - DepositReceipt_Base.sol#L21 : HEARTBEAT_TIME gap is too huge
Medium
Reward
Sponsor Confirmed
Will Fix
#256
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
hansfriese - The protocol shouldn't charge interests when paused
Has Duplicates
Medium
Reward
Sponsor Confirmed
Will Fix
#234
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
hansfriese - Wrong constants for time delay
Has Duplicates
Medium
Reward
Sponsor Confirmed
Will Fix
#231
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
ak1 - increaseCollateralAmount : User is not allowed to increase collateral freely.
Has Duplicates
Medium
Reward
Sponsor Confirmed
Will Fix
#229
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
Jeiwan - Dangerous assumption on the peg of USDC can lead to manipulations
Has Duplicates
Medium
Reward
Will Fix
#224
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
__141345__ -
latestRoundData()
has no check for round completeness
Has Duplicates
Medium
Reward
Will Fix
#200
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
GimelSec - Wrong
CHANGE_COLLATERAL_DELAY
in CollateralBook
Has Duplicates
Medium
Reward
Sponsor Confirmed
Will Fix
#191
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Bad debt may persist even after complete liquidation in Velo Vault due to truncation
Medium
Reward
Sponsor Confirmed
Will Fix
#174
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - User is unable to partially payback loan if they aren't able to post enough isoUSD to bring them back to minOpeningMargin
High
Reward
Sponsor Confirmed
Will Fix
#161
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Vault_Base_ERC20#_updateVirtualPrice calculates interest incorrectly if updated frequently
Has Duplicates
Medium
Reward
Sponsor Confirmed
Will Fix
#158
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
cccz - priceLiquidity() may not work if PriceFeed.aggregator() is updated
Medium
Reward
Will Fix
#145
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Malicious user can DOS pool and avoid liquidation by creating secondary liquidity pool for Velodrome token pair
High
Reward
Sponsor Confirmed
Will Fix
#72
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
ctf_sec - Vault_Synths.sol code does not consider protocol exchange fee when evaluating the Collateral worth
Medium
Reward
Sponsor Confirmed
Will Fix
#120
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
KingNFT - The calculation of
totalUSDborrowed
in openLoan()
is not correct
Has Duplicates
High
Reward
Sponsor Confirmed
Will Fix
#85
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Users who deposit Lyra LP as collateral will lose OP vault rewards
High
Reward
Sponsor Confirmed
Will Fix
#78
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - All collateral in Velodrome vault will be permantly locked if either asset in liquidity pair stays outside of min/max price
Has Duplicates
Medium
Reward
#70
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Users are unable close or add to their Lyra vault positions when price is stale or circuit breaker is tripped
Has Duplicates
High
Reward
Will Fix
#69
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Outstanding loans cannot be closed or liquidated if collateral is paused
Has Duplicates
High
Reward
Sponsor Confirmed
Will Fix
#57
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Anyone can withdraw user's Velo Deposit NFT after approval is given to depositor
Has Duplicates
High
Reward
Sponsor Confirmed
Will Fix
#47
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - User can steal rewards from other users by withdrawing their Velo Deposit NFTs from other users' depositors
Has Duplicates
High
Reward
Sponsor Confirmed
Will Fix
#51
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
0x52 - Swapping 100 tokens in DepositReceipt_ETH and DepositReciept_USDC breaks usage of WBTC LP and other high value tokens
Has Duplicates
High
Reward
Sponsor Confirmed
Will Fix
#46
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
hansfriese - Lyra vault underestimates the collateral value
Medium
Reward
Sponsor Confirmed
Will Fix
#242
opened Dec 11, 2022 by
github-actions
bot
updated Jan 7, 2023
ProTip!
Mix and match filters to narrow down what you’re looking for.