Skip to content

Issues: code-423n4/2024-05-predy-validation

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

Risk of Incorrect Price Feeds Due to Chainlink Oracle Circuit Breaker Activation 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_18_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#642 opened Jun 14, 2024 by c4-bot-10
Pausable Tokens like USDC can cause liquidation to Fail 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_27_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#639 opened Jun 14, 2024 by c4-bot-1
Potential failure in liquidation process due to blacklisted recipients 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_27_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#625 opened Jun 14, 2024 by c4-bot-9
One pair can steal another pair's Uniswap liquidity during reallocate() call if both pairs operate on the same Uniswap pool and both have the same upper and lower tick during reallocation. 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working 🤖_132_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#595 opened Jun 14, 2024 by c4-bot-8
Incorrect calculation of decayedSlippageTorelance 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_78_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#590 opened Jun 14, 2024 by c4-bot-1
executeTrade(...) can be DOSed due to the non configurable MAX_ACCEPTABLE_SQRT_PRICE_RANGE 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#580 opened Jun 14, 2024 by c4-bot-6
Validation Failure in SlippageLib.checkPrice 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_78_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#524 opened Jun 14, 2024 by c4-bot-2
Chainlink price feed address should not be immutable 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#520 opened Jun 14, 2024 by c4-bot-3
PriceFeed#getSqrtPrice() incorrectly integrates with the Pyth oracle due to only considering expo == -8 as valid prices 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_10_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#475 opened Jun 13, 2024 by c4-bot-5
Possible DoS When calling GammaTradeMarket::_removePosition will cause user position to not be able to get liquidated 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_68_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#472 opened Jun 13, 2024 by c4-bot-10
No grace time for traders when L2 sequencers come online after being down, making them prone to liquidations 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_152_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#466 opened Jun 13, 2024 by c4-bot-10
Wrong bool parameter returned during reallocation can lead to issues 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#438 opened Jun 13, 2024 by c4-bot-9
Potential Denial of Service (DoS) Vulnerability in getUserPositions Function 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_166_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#418 opened Jun 13, 2024 by c4-bot-2
In GammaTradeMarket, an attacker can fill up the positionIDs[attacker] array and make the filler pay maximum gas limit per transaction 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_68_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#395 opened Jun 12, 2024 by c4-bot-4
Incorrect decimalsDiff input could lead to incorrect result of PriceFeed:getSqrtPrice 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_07_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#373 opened Jun 11, 2024 by c4-bot-10
Storage Collision in BaseMarket.sol and BaseMarketUpgradable.sol 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_primary AI based primary recommendation sufficient quality report This report is of sufficient quality
#366 opened Jun 11, 2024 by c4-bot-7
UniV3 Oracle Manipulation on L2s 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_45_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#345 opened Jun 11, 2024 by c4-bot-5
Dust will be accumulated when calculating the protocol and creator revenues due to the division performed 3 (High Risk) Assets can be stolen/lost/compromised directly bug Something isn't working 🤖_primary AI based primary recommendation 🤖_83_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#340 opened Jun 11, 2024 by c4-bot-4
A malicious filler can prevent trades in markets inheriting from BaseMarketUpgradable 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_31_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#305 opened Jun 10, 2024 by c4-bot-10
Hardcoded 1e18 Amount Causes Issues with Non-Standard Decimal Tokens 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_03_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#303 opened Jun 10, 2024 by c4-bot-3
Negative Tick Rounding raises price of asset 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_69_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#285 opened Jun 10, 2024 by c4-bot-9
Changing Risk Parameters Can Lead to Unexpected Liquidations 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_34_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#283 opened Jun 10, 2024 by c4-bot-9
Limit Price Can Be Bypassed 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working 🤖_106_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#280 opened Jun 10, 2024 by c4-bot-9
Uninitialized Implementation Contracts are not Completely Protected 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_36_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#249 opened Jun 8, 2024 by c4-bot-8
Chainlink's latestRoundData might return stale or incorrect results 2 (Med Risk) Assets not at direct risk, but function/availability of the protocol could be impacted or leak value bug Something isn't working edited-by-warden 🤖_91_group AI based duplicate group recommendation sufficient quality report This report is of sufficient quality
#244 opened Jun 8, 2024 by c4-bot-1
ProTip! Mix and match filters to narrow down what you’re looking for.