DeFiHardhatOracleProxyUpdates
100,000 USDC
View results
Submission Details
Severity: low
Invalid

`sender` balance does not change before and after transfer of funds

Summary

sender transferring their funds state variables is not updated.

Vulnerability Details

a user can make multiple transfers of the same amount without decreasing the sender balance. The invariant test fails if you check balance before
transfer and balance after transfer of sender because is still the same amount

Impact

funds can be drained from contract. This can cause a DOS for other user when they try to transfer or withdraw

Tools Used

manual, fuzz testing

Recommendations

decrease the sender amount before the transfers.

Updates

Lead Judging Commences

giovannidisiena Lead Judge about 1 year ago
Submission Judgement Published
Invalidated
Reason: Lack of quality
Assigned finding tags:

Informational/Invalid

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.