Keepers wont be able to cancel ongoing flow because trying to send back collateral to owner can revert due to blacklisting functionality of USDC.
Temporary DoS until admin manually update the flow state variable so that new deposits and withdrawals are available. Due to time-sensitiveness of withdraw and deposit operation such temporary DoS can lead to loss of funds for users. For example if they are longing ETH and ETH price starts going down, users wont be able to withdraw their funds.
Manual review.
Consider using try catch block.
Likelihood: Extremely Low, when user is blacklisted between the deposit/withdraw and cancelFlow is called by the Keeper. Impact: Medium/High, cancelFlow DoS.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.