In repay and seizeLoan are two function in Lender.sol contract which are transfer token first then delete the loan record.
Denial of Service attack can be perform on the contract because ,we transfer the token to the users then we delete the record which may lead to contract to attack and make it unable to used for users.
unable to used it and may be cause the lose of money.
Foundry, code review and static analysis tool
Delete loan record first then transfer token.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.