Core Contracts

Regnum Aurum Acquisition Corp
HardhatReal World AssetsNFT
77,280 USDC
View results
Submission Details
Severity: high
Invalid

Mismanaged Governance Parameters -LendingPool.sol

Summary

Owner-controlled parameters (e.g., liquidationThreshold) enable protocol abuse.

Vulnerability Details

Parameters like liquidationThreshold or liquidityBufferRatio are owner-controlled, allowing governance to arbitrarily alter liquidation logic.

Impact

A compromised owner could drain funds or block user interactions (e.g., by setting liquidationThreshold = 0).

Tools Used

  • Manual Code Review: Audit parameter-setting functions for access controls.

Recommendations

Use a timelock controller and multisig for parameter updates.

function setParameter(...) external onlyByTimelockOrOwner {
// ...
}
Updates

Lead Judging Commences

inallhonesty Lead Judge 4 months ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.