Skip to content
This repository has been archived by the owner on Mar 3, 2024. It is now read-only.

Issues: sherlock-audit/2023-08-cooler-judging

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

deadrxsezzz - Lender can front-run rollLoan and call provideNewTermsForRoll with unfavorable terms Has Duplicates A valid issue with 1+ other issues describing the same vulnerability Medium A valid Medium severity issue Reward A payout will be made for this issue Will Fix The sponsor confirmed this issue will be fixed
#243 opened Aug 28, 2023 by sherlock-admin2
Ignite - isCoolerCallback can be bypassed Has Duplicates A valid issue with 1+ other issues describing the same vulnerability High A valid High severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Won't Fix The sponsor confirmed this issue will not be fixed
#187 opened Aug 28, 2023 by sherlock-admin2
deth - Clearinghouse.sol#claimDefaulted() - Clearinghouse doesn't approve the MINTR to handle tokens in his name, which bricks the entire function. Has Duplicates A valid issue with 1+ other issues describing the same vulnerability High A valid High severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Will Fix The sponsor confirmed this issue will be fixed
#176 opened Aug 28, 2023 by sherlock-admin
klaus - At claimDefaulted, the lender may not receive the token because the Unclaimed token is not processed Has Duplicates A valid issue with 1+ other issues describing the same vulnerability High A valid High severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Will Fix The sponsor confirmed this issue will be fixed
#119 opened Aug 28, 2023 by sherlock-admin2
jkoppel - gOhm stuck forever if call claimDefaulted on Cooler directly Has Duplicates A valid issue with 1+ other issues describing the same vulnerability Medium A valid Medium severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Will Fix The sponsor confirmed this issue will be fixed
#46 opened Aug 28, 2023 by sherlock-admin
jkoppel - Can steal gOhm by calling Clearinghouse.claimDefaulted on loans not made by Clearinghouse Has Duplicates A valid issue with 1+ other issues describing the same vulnerability High A valid High severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Will Fix The sponsor confirmed this issue will be fixed
#28 opened Aug 28, 2023 by sherlock-admin
ADM - Lender is able to steal borrowers collateral by calling rollLoan with unfavourable terms on behalf of the borrower. Escalation Resolved This issue's escalations have been approved/rejected Has Duplicates A valid issue with 1+ other issues describing the same vulnerability Medium A valid Medium severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Will Fix The sponsor confirmed this issue will be fixed
#26 opened Aug 28, 2023 by sherlock-admin
thekmj - emergency_shutdown role is not enough for emergency shutdown. Disagree With Severity The sponsor disputed the severity of this issue Has Duplicates A valid issue with 1+ other issues describing the same vulnerability Medium A valid Medium severity issue Reward A payout will be made for this issue Sponsor Confirmed The sponsor acknowledged this issue is valid Will Fix The sponsor confirmed this issue will be fixed
#1 opened Aug 28, 2023 by sherlock-admin2
ProTip! Type g p on any issue or pull request to go back to the pull request listing page.