Reentrancy in StabilityPool Withdrawals Attacler could re enter the function withdraw
StabilityPool.withdraw()
lacks reentrancy guards, risking fund drains if deToken
implements ERC777 callbacks.
Attackers could re-enter the function to withdraw more funds than allowed.
Slither, MythX
Before: No reentrancy protection.
After: Use ReentrancyGuard
.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.