Steadefi

Steadefi
DeFiHardhatFoundryOracle
35,000 USDC
View results
Submission Details
Severity: medium
Invalid

The updateFeePerSecond function does not set an upper limit.

Summary

The updateFeePerSecond function does not set an upper limit; any extremely large number can be set successfully.

Vulnerability Details

The updateFeePerSecond function does not set an upper limit; any extremely large number can be set successfully. This leads to abnormally high charges, which may cause the vault to not function properly. Although only administrators have setting privileges, eliminating this possibility increases the level of trust users have in the program.

Impact

May affect the normal operation of the vault.

Tools Used

manual

Recommendations

It is recommended that the upper limit of feePerSecond be set within a reasonable range.

Updates

Lead Judging Commences

hans Lead Judge almost 2 years ago
Submission Judgement Published
Validated
Assigned finding tags:

Centralization Risk

Impact: High Likelihood: Low Centralization risk is regarded a known issue. This tag will include all submissions : - Admin setter functions without validations

hans Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Known issue
Assigned finding tags:

Centralization Risk

Impact: High Likelihood: Low Centralization risk is regarded a known issue. This tag will include all submissions : - Admin setter functions without validations

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.