All reports
highLogic errorEVM-Solidity

DittoETH: Flawed if check causes inaccurate tracking of the protocol's `ercDebt` and collateral

Payout
$0
Protocol
DittoETH
Disclosed
Jun 25, 2024
Source
code4rena

DittoETH's RedemptionFacet contains an authorization flaw in claimRemainingCollateral(): the guard that should restrict a caller to their own proposal uses the conjunction && where a disjunction || is required. Because the check only reverts when both the owne …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.