TSwapPool::swapExactOutput lacks slippage protection.
Lines 335-356
Market fluctuations prior to any transactions can cause the user to get a much worse swap than expected
Manual review
Modify swapExactOutput by adding maxInputAmount as follows:
This limits how much the user can spend.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.