-
Notifications
You must be signed in to change notification settings - Fork 0
Issues: sherlock-audit/2025-01-perennial-v2-4-update-judging
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Dazzling Pastel Gibbon - the “creating a new checkpoint” process
Sponsor Disputed
The sponsor disputed this issue's validity
#61
opened Jan 31, 2025 by
sherlock-admin3
Cheesy Clay Dinosaur - Front-Running Vulnerability in executeOrder() of Manager.sol
Sponsor Disputed
The sponsor disputed this issue's validity
#60
opened Jan 31, 2025 by
sherlock-admin4
Noisy Quartz Bird - Storage Manipulation Attack using The sponsor disputed this issue's validity
_version
in initialization process
Sponsor Disputed
#59
opened Jan 31, 2025 by
sherlock-admin2
Jovial Ocean Elk - Incorrect use of nagative values in The sponsor disputed this issue's validity
maintained()
and margined()
function in Position.sol
Sponsor Disputed
#58
opened Jan 31, 2025 by
sherlock-admin3
Clean Hemp Barracuda - Irreversible Order State on Fee Handling Failure
Sponsor Disputed
The sponsor disputed this issue's validity
#57
opened Jan 31, 2025 by
sherlock-admin4
Clean Hemp Barracuda - Front-Runnable The sponsor disputed this issue's validity
maxFee
Reduction
Sponsor Disputed
#56
opened Jan 31, 2025 by
sherlock-admin2
Clean Hemp Barracuda - Incomplete Gas Tracking in Order Execution
Sponsor Disputed
The sponsor disputed this issue's validity
#55
opened Jan 31, 2025 by
sherlock-admin3
Clean Hemp Barracuda - Inaccurate Keeper Fee in Order Execution
Sponsor Disputed
The sponsor disputed this issue's validity
#54
opened Jan 31, 2025 by
sherlock-admin4
Cheesy Pebble Kookaburra - The sponsor acknowledged this issue is valid
Won't Fix
The sponsor confirmed this issue will not be fixed
Controller::withdrawWithSignature
may not work due to wrong assumption of 1 DSU = 1 USDC
Sponsor Confirmed
#53
opened Jan 31, 2025 by
sherlock-admin2
Cheerful Taffy Dolphin - Missing Execution Rights Validation in _cancelOrder() Enables Front-Running of Signed Cancel Orders and Market Manipulation
Sponsor Disputed
The sponsor disputed this issue's validity
#52
opened Jan 31, 2025 by
sherlock-admin3
Cheerful Taffy Dolphin - Strict Oracle Timestamp Equality Check Triggers Unnecessary VaultCurrentOutOfSyncError Due to Network Latency
Sponsor Disputed
The sponsor disputed this issue's validity
#51
opened Jan 31, 2025 by
sherlock-admin4
Cheerful Taffy Dolphin - Minimum Oracle Timestamp Selection Leads to Price Staleness and Settlement Manipulation in Multi-Market Vault
Sponsor Disputed
The sponsor disputed this issue's validity
#50
opened Jan 31, 2025 by
sherlock-admin2
Cheerful Taffy Dolphin - Array Length Mismatch in Vault's _manage() Function Could Lead to Fund Loss via Invalid Position Management
Sponsor Disputed
The sponsor disputed this issue's validity
#49
opened Jan 31, 2025 by
sherlock-admin3
Cheerful Taffy Dolphin - Zero-Value Operation Bypass in Vault Update Function Enables Economic Manipulation Through Artificial Checkpoint Creation
Sponsor Disputed
The sponsor disputed this issue's validity
#48
opened Jan 31, 2025 by
sherlock-admin4
Cheerful Taffy Dolphin - Vault Profit Share Bypass During Migration Results in Permanent Revenue Loss Through Zero-Mark Condition
Sponsor Disputed
The sponsor disputed this issue's validity
#47
opened Jan 31, 2025 by
sherlock-admin2
Cheerful Taffy Dolphin - Missing Position Size Validation in updateLeverage() Causes Forced Position Adjustments Across Pooled Vault Assets
Sponsor Disputed
The sponsor disputed this issue's validity
#46
opened Jan 31, 2025 by
sherlock-admin3
Cheerful Taffy Dolphin - Lack of LEVERAGE_BUFFER Check in updateLeverage() Causes Position Operations to Revert Due to Storage-Execution Mismatch
Sponsor Disputed
The sponsor disputed this issue's validity
#45
opened Jan 31, 2025 by
sherlock-admin4
Cheerful Taffy Dolphin - Incorrect Profit Share Distribution Due to Asset-Share Ratio Manipulation in Checkpoint Calculations
Sponsor Disputed
The sponsor disputed this issue's validity
#44
opened Jan 31, 2025 by
sherlock-admin2
Cheerful Taffy Dolphin - Stale Parameter Usage in Rebalance Causes Incorrect Position Sizing and Risk Management Failures
Sponsor Disputed
The sponsor disputed this issue's validity
#43
opened Jan 31, 2025 by
sherlock-admin3
Cheerful Taffy Dolphin - Vault Collateral Over-Reservation Bug Leads to 100% Capital Lockup Due to Zero-State Division Edge Case
Sponsor Disputed
The sponsor disputed this issue's validity
#42
opened Jan 31, 2025 by
sherlock-admin4
Cheerful Taffy Dolphin - Suboptimal Position Size Rounding in MakerVault Reduces Protocol Fee Generation
Sponsor Disputed
The sponsor disputed this issue's validity
#41
opened Jan 31, 2025 by
sherlock-admin2
Cheerful Taffy Dolphin - Lack of Slippage Protection in Share Minting Allows MEV Sandwich Attacks and Market Manipulation Which can Extract Value From Depositors
Sponsor Disputed
The sponsor disputed this issue's validity
#40
opened Jan 31, 2025 by
sherlock-admin3
Cheerful Taffy Dolphin - First Depositor Share Price Manipulation via Zero Minimum Deposit Enables Unfair Value Extraction From Subsequent Depositors
Sponsor Disputed
The sponsor disputed this issue's validity
#39
opened Jan 31, 2025 by
sherlock-admin4
Cheerful Taffy Dolphin - Restrictive Domain Validation in Verifier Contract Breaks Zero-Domain Message Processing and Market Integrations
Sponsor Disputed
The sponsor disputed this issue's validity
#38
opened Jan 31, 2025 by
sherlock-admin2
Cheerful Taffy Dolphin - Duplicate Market Allocation Bypass Leads to Continuous Rebalancing and Fee Drain
Sponsor Disputed
The sponsor disputed this issue's validity
#37
opened Jan 31, 2025 by
sherlock-admin3
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.