20,000 USDC
View results
Submission Details
Severity: low
Valid

Inconsistent Auction Time End

Summary

It is allowed to the lender to seize the loan in the last second of the auction.

Vulnerability Details

It is checked in the code if block.timestamp < loan.auctionStartTimestamp + loan.auctionLength.

Impact

This will allow the lender to seize the loan in the last second of the auction which violate the requirements. In case if the loan.auctionLength is set to 1, the lender will be allowed to skip the auction in this way and seize the loan.

Tools Used

Manual review

Recommendations

Replace the mentioned verification with the block.timestamp <= loan.auctionStartTimestamp + loan.auctionLength.

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.