Cally contest - seanamani's results

Earn yield on your NFTs or tokens via covered call vaults.

General Information

Platform: Code4rena

Start Date: 10/05/2022

Pot Size: $50,000 USDC

Total HM: 13

Participants: 100

Period: 5 days

Judge: HardlyDifficult

Total Solo HM: 1

Id: 122

League: ETH

Cally

Findings Distribution

Researcher Performance

Rank: 66/100

Findings: 1

Award: $56.04

🌟 Selected for report: 0

🚀 Solo Findings: 0

Issues: Missing Event for critical function.

Issues: Volts can be created with non-existent/destructed ERC20/ERC721

  • Severity: Low
  • Locations: Cally.sol: safeTransferFrom()
  • Count: 4
  • Description: None of the functions in this library @rari-capital/solmate/src/utils/SafeTransferLib.sol check that a token has code at all! That responsibility is delegated to the caller.
  • Remediation: Check address.code

#0 - outdoteth

2022-05-16T18:47:43Z

this can be bumped to high risk: Issues: Volts can be created with non-existent/destructed ERC20/ERC721; https://github.com/code-423n4/2022-05-cally-findings/issues/225

#1 - HardlyDifficult

2022-05-30T19:07:18Z

Per the C4 guidance "part of auditing is demonstrating proper theory of how an issue could be exploited" and that does not seem to be explored here as it was in the primary report.

AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter