Reentrancy in StabilityPool Withdrawals Attacler could re enter the function withdraw
StabilityPool.withdraw()
lacks reentrancy guards, risking fund drains if deToken
implements ERC777 callbacks.
Attackers could re-enter the function to withdraw more funds than allowed.
Slither, MythX
Before: No reentrancy protection.
After: Use ReentrancyGuard
.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
View preliminary resultsAppeals are being carefully reviewed by our judges.
The contest is complete and the rewards are being distributed.