In the swap
function of the SmartVaultV3
contract, the block.timestamp
is used as the deadline parameter when interacting with an AMM pool. This approach allows a miner to control when the transaction is included in a block, making it valid at the miner's chosen timestamp. A malicious miner could exploit this behavior to impact the timing of the transaction's execution.
malicious miner to manipulate the timing of transactions, leading to increased slippage.
Manual Review
Specify a deadline parameter.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.