mediumGovernance attackEVM-Solidity
Ethereum Credit Guild: `SurplusGuildMinter.getReward()` is susceptible to DoS due to unbounded loop
- Payout
- $0
- Protocol
- Ethereum Credit Guild
- Disclosed
- Feb 22, 2024
- Source
- code4rena
A gas exhaustion vulnerability exists in Ethereum Credit Guild's SurplusGuildMinter contract due to unbounded loop execution during reward collection. When calculating or claiming rewards via ProfitManager.claimRewards(), the contract loops through every gauge …
Similar reports
- No close matches yet.
References
- https://github.com/code-423n4/2023-12-ethereumcreditguild-findings/issues/69
- https://github.com/code-423n4/2023-12-ethereumcreditguild-findings
This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.