Liquid Staking

Stakelink
DeFiHardhatOracle
50,000 USDC
View results
Submission Details
Severity: low
Invalid

No Check on canWithdraw Amount in `StakingPool::strategyWithdraw` Function

Summary

The strategyWithdraw function allows withdrawal of any amount regardless of canWithdraw from strategies, which shouldn't be the case.

Vulnerability Details

The strategyWithdraw function allows withdrawals even if the strategy has less than the minimum deposit amount. As per the functionality, if a strategy's balance is below the minimum deposit amount, it shouldn't allow further withdrawals.

Impact

Allowing withdrawals even after the strategy's balance drops below the minimum deposit amount.

Tools Used

Manual Review

Recommendations

Check the canWithdraw amount before withdrawing from the strategy.

Updates

Lead Judging Commences

inallhonesty Lead Judge 10 months ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.