TSwapPool::swapExactOutput
function doesn't have a slippage protection check to help users get the value that they are expecting to get in return of swap.
Not having the check will let user submit a transaction without knowing what he's expecting to get out of the pool hence, an attacker or MEV bot who sees the transaction may place an order just before the swapper to manipulate the pool or even a big whale may place an order that changes the value of pool immensely thereby swapper getting the less tokens than he intended to get.
pool takes in more tokens than what user want to spend for the output he places the order for.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.