Description: In IVeloRouter
, the deadline parameter can be manipulated in which No strict validation of deadline, Potential for sandwich attacks and Miners/validators can manipulate transaction timing.
Impact:
Potential price manipulation
Reduced swap execution guarantees
Proof of Concept:
Recommended Mitigation:
Implement stricter deadline validation
Use shorter, more restrictive deadline windows
Consider using Uniswap V3 style TWAP oracles
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.