stake.link

stake.link
DeFiHardhatBridge
27,500 USDC
View results
Submission Details
Severity: high
Invalid

Incorrect Chainlink CCIP token transfer implementation

Summary

The chainlink ccip token transfer uses dedicated pool to transfer tokens across chains. none of the tokens used in the protocol are in the chainlink ccip pool.

Vulnerability Details

for tokens to be transfered from one chain to another, the tokens have to be supported by chainlink and be below the rate limiting otherwise the ccip calls wiil revert
for more information https://docs.chain.link/ccip/tutorials/cross-chain-tokens

Impact

many aspects of the protocol like distributing rewards, bridging tokens, e.t.c will not work

Tools Used

manual audit

Recommendations

consider using tokens supported by chainlink ccip or create the pools and handle the minting and burning of the tokens

Updates

Lead Judging Commences

0kage Lead Judge over 1 year ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.