Summary
remainingRewards is not updated in closePot()
Vulnerability Details
The remainingRewards variable is not updated in closePot(), where it is used for a calculation, and then a send.
function closePot() external onlyOwner {
if (block.timestamp - i_deployedAt < 90 days) {
revert Pot__StillOpenForClaim();
}
if (remainingRewards > 0) {
uint256 managerCut = remainingRewards / managerCutPercent;
i_token.transfer(msg.sender, managerCut);
uint256 claimantCut = (remainingRewards - managerCut) / i_players.length;
for (uint256 i = 0; i < claimants.length; i++) {
_transferReward(claimants[i], claimantCut);
}
}
}
Impact
The current code does not explicitly update the remainingRewards variable. This can lead to inconsistent state.
Tools Used
Manual Review
Recommendations
Consider adding lines of code to update the remainingRewards variable.
function closePot() external onlyOwner {
if (block.timestamp - i_deployedAt < 90 days) {
revert Pot__StillOpenForClaim();
}
if (remainingRewards > 0) {
uint256 managerCut = remainingRewards / managerCutPercent;
++ remainingRewards -= managerCut;
i_token.transfer(msg.sender, managerCut);
uint256 claimantCut = (remainingRewards - managerCut) / i_players.length;
for (uint256 i = 0; i < claimants.length; i++) {
_transferReward(claimants[i], claimantCut);
++ remainingRewards -= claimantCut;
}
}
}