mediumLogic errorEVM-Solidity
Exactly Protocol: `Market::liquidate()` will not work when most of the liquidity is borrowed due to wrong liquidator `transferFrom()` order
- Payout
- $0
- Protocol
- Exactly Protocol
- Disclosed
- May 4, 2024
- Source
- sherlock
Exactly Protocol's Market::liquidate() collects the liquidator's repayment funds via transferFrom() only at the very end of the function, after collateral has already been seized and moved to the liquidator. When the repay market and the seize market are the s …
Similar reports
- No close matches yet.
References
This report is already public and closed. CoinBuggie never publishes active or unpatched vulnerability data.