All reports
highLogic errorEVM-Solidity

ZeroLend One: Function `executeMintToTreasury` will incorrectly reduce the `supplyShares`, therefore prevent the last users from withdrawing

Payout
$0
Protocol
ZeroLend One
Disclosed
Sep 10, 2024
Source
sherlock

ZeroLend One's PoolLogic.executeMintToTreasury decrements the global totalSupply.supplyShares counter for accrued treasury fees even though the corresponding share balance was never actually minted to the treasury. This violates the invariant that totalSupply. …

Similar reports

  • No close matches yet.

References

This report is already public and closed. CoinBuggie never publishes active or unpatched vulnerability data.