15,000 USDC
View results
Submission Details
Severity: medium
Valid

Fee on transfer tokens

Vulnerability Details

As of the current implementation of the engine and considering tokens with price feeds, we can assume the possibility of a FEE-ON-TRANSFER token being allowed to be used as collateral, for which the protocol does not introduce the necessary implement.

Impact

Minting and tracking of user balances relies on the amount of token deposited, so in case it is different due to the fees, there would be miscalculations when burning, liquidating, etc.

Tools Used

Manual Review

Recommendations

When depositing and minting tokens, use the difference after the collateral transfer.

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.