The lack of data staleness from the price feed oracle potentially reduces accuracy.
The code on line 155 of KittyVault
contract consumes price data from Chainlink oracle. However, there is no check to determine whether the data retrieved from the feed is fresh or not. Stale data could cause price discrepancy on the system and can be exploited by the eager users.
Potential loss of fund due to stale data.
Manual review.
Consider adding data staleness check. Refer to this link for further information.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.