Steadefi

Steadefi
DeFiHardhatFoundryOracle
35,000 USDC
View results
Submission Details
Severity: low
Invalid

Keepers/OpenZepplin Relayers have a Pause Functionality which can halt all maintenance actions

Summary

The OpenZepplin Relayers have a pause functionality in them, which makes them stop every automated action they were assigned to do which might leave the protocol that assigned maintenance unattended

Vulnerability Details

OpenZepplin Relayers, that will be used inside their configurations have the abiltiy for their actions to be paused, in their contracts.

Impact

When these Keepers are paused, main functions and actions that are meant to perform in the steadefi protocol will not actually function, and cause huge damage to how the protocol functions as uncompleted deposit/withdrawals and all other automated actions assigned will cease to work and damage the protocol.

Tools Used

Manual Analysis

Recommendations

Protocol owners should take note of this kind of issue, and take additional safety measures that prevent an unintentional pause or malicious actor pause even for a short period of time as the effects can be higher than estimated in the form of a strategy vault that is out of sync.

Updates

Lead Judging Commences

hans Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Other

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.