Description:
The protocol uses totalSupply to track total deposit, this will result in wrong calculation of deposit when a user deposit straight in the vault without calling deposit function
Impact:
leads to wrong calculation and tracking of users total deposit
Proof of Concept:
Recommended Mitigation:
Tracking total users deposit through a mapping or storage is advisable
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.