HardhatDeFi
15,000 USDC
View results
Submission Details
Severity: low
Invalid

USDT/USDC blacklisting or fee feature

Vulnerability Details

While USDC and USDT have a blacklisting feature, they also have a fee feature where fees are not activated right now, they can be activated at anytime.

This might be problematic when creating a new pool or adding liquidity to the pool, since if users are blacklisted the pool creation or liquidity adding might be failure. or if fees are activated it might easily break the accounting

https://github.com/Cyfrin/2025-01-diva/blob/1b6543768c341c2334cdff87b6dd627ee2f62c89/contracts/src/AaveDIVAWrapperCore.sol#L426

Recommendations

Query if the user is blacklisted during pool creation

Updates

Lead Judging Commences

bube Lead Judge 7 months ago
Submission Judgement Published
Invalidated
Reason: Known issue

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.