The getAmountOfAssetOut
function uses unvalidated debt values to compute premiums/discounts, enabling artificial inflation of asset outputs.
Affected Code:
Exploit Scenario:
Attacker opens positions to artificially inflate vault debt.
Triggers swaps during high debt to get inflated asset outputs.
Profit from arbitrage between real and protocol prices.
Protocol Insolvency: Vault assets depleted via inflated swaps.
Severity: High (CVSS 8.7).
Debt simulation scripts.
Differential price analysis.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.