Description: in protocols doing the time of emergency , withdraw functions are the most vital function to pause because that point is mainly where malicious actors will withdraw from , other vital functions in veRAACToken have the whenNotPaused modifier except the withdraw functions
Impact: malicious actors who might be the reason for the protocol paused the contract will still be able to get away with funds even when the protocol is paused
Proof of Concept:
Recommended Mitigation:
Fix the whenNotPaused modifier like this below
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.