-
Notifications
You must be signed in to change notification settings - Fork 0
Issues: code-423n4/2024-05-predy-validation
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Risk of Incorrect Price Feeds Due to Chainlink Oracle Circuit Breaker Activation
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_18_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#642
opened Jun 14, 2024 by
c4-bot-10
Pausable Tokens like USDC can cause liquidation to Fail
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_27_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#639
opened Jun 14, 2024 by
c4-bot-1
Potential failure in liquidation process due to blacklisted recipients
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_27_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#625
opened Jun 14, 2024 by
c4-bot-9
One pair can steal another pair's Uniswap liquidity during Assets can be stolen/lost/compromised directly
bug
Something isn't working
🤖_132_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
reallocate()
call if both pairs operate on the same Uniswap pool and both have the same upper and lower tick during reallocation.
3 (High Risk)
#595
opened Jun 14, 2024 by
c4-bot-8
Incorrect calculation of decayedSlippageTorelance
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_78_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#590
opened Jun 14, 2024 by
c4-bot-1
executeTrade(...)
can be DOSed due to the non configurable MAX_ACCEPTABLE_SQRT_PRICE_RANGE
2 (Med Risk)
#580
opened Jun 14, 2024 by
c4-bot-6
Validation Failure in Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_78_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
SlippageLib.checkPrice
2 (Med Risk)
#524
opened Jun 14, 2024 by
c4-bot-2
Chainlink price feed address should not be immutable
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_primary
AI based primary recommendation
sufficient quality report
This report is of sufficient quality
#520
opened Jun 14, 2024 by
c4-bot-3
PriceFeed#getSqrtPrice()
incorrectly integrates with the Pyth oracle due to only considering expo == -8
as valid prices
2 (Med Risk)
#475
opened Jun 13, 2024 by
c4-bot-5
Possible DoS When calling Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_68_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
GammaTradeMarket::_removePosition
will cause user position to not be able to get liquidated
2 (Med Risk)
#472
opened Jun 13, 2024 by
c4-bot-10
No grace time for traders when L2 sequencers come online after being down, making them prone to liquidations
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_152_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#466
opened Jun 13, 2024 by
c4-bot-10
Wrong bool parameter returned during reallocation can lead to issues
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_primary
AI based primary recommendation
sufficient quality report
This report is of sufficient quality
#438
opened Jun 13, 2024 by
c4-bot-9
Potential Denial of Service (DoS) Vulnerability in Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_166_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
getUserPositions
Function
2 (Med Risk)
#418
opened Jun 13, 2024 by
c4-bot-2
In Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_68_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
GammaTradeMarket
, an attacker can fill up the positionIDs[attacker]
array and make the filler pay maximum gas limit per transaction
2 (Med Risk)
#395
opened Jun 12, 2024 by
c4-bot-4
Incorrect decimalsDiff input could lead to incorrect result of Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_07_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
PriceFeed:getSqrtPrice
2 (Med Risk)
#373
opened Jun 11, 2024 by
c4-bot-10
Storage Collision in Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_primary
AI based primary recommendation
sufficient quality report
This report is of sufficient quality
BaseMarket.sol
and BaseMarketUpgradable.sol
2 (Med Risk)
#366
opened Jun 11, 2024 by
c4-bot-7
UniV3 Oracle Manipulation on L2s
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_45_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#345
opened Jun 11, 2024 by
c4-bot-5
Dust will be accumulated when calculating the protocol and creator revenues due to the division performed
3 (High Risk)
Assets can be stolen/lost/compromised directly
bug
Something isn't working
🤖_primary
AI based primary recommendation
🤖_83_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#340
opened Jun 11, 2024 by
c4-bot-4
A malicious filler can prevent trades in markets inheriting from Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_31_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
BaseMarketUpgradable
2 (Med Risk)
#305
opened Jun 10, 2024 by
c4-bot-10
Hardcoded Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_03_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
1e18
Amount Causes Issues with Non-Standard Decimal Tokens
2 (Med Risk)
#303
opened Jun 10, 2024 by
c4-bot-3
Negative Tick Rounding raises price of asset
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_69_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#285
opened Jun 10, 2024 by
c4-bot-9
Changing Risk Parameters Can Lead to Unexpected Liquidations
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_34_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#283
opened Jun 10, 2024 by
c4-bot-9
Limit Price Can Be Bypassed
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
🤖_106_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#280
opened Jun 10, 2024 by
c4-bot-9
Uninitialized Implementation Contracts are not Completely Protected
2 (Med Risk)
Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_36_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
#249
opened Jun 8, 2024 by
c4-bot-8
Chainlink's Assets not at direct risk, but function/availability of the protocol could be impacted or leak value
bug
Something isn't working
edited-by-warden
🤖_91_group
AI based duplicate group recommendation
sufficient quality report
This report is of sufficient quality
latestRoundData
might return stale or incorrect results
2 (Med Risk)
#244
opened Jun 8, 2024 by
c4-bot-1
Previous Next
ProTip!
Mix and match filters to narrow down what you’re looking for.