All reports
highLogic errorEVM-Solidity

INIT Capital: wLp tokens could be stolen

Payout
$0
Protocol
INIT Capital
Disclosed
Jan 16, 2024
Source
code4rena

The INIT Capital protocol contained a critical logic flaw in its PosManager contract that allowed unauthorized users to drain wrapped LP (wLp) collateral from arbitrary positions. The vulnerability stemmed from an incomplete ownership validation check in the r …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.