Trail of Bits

Sandclock

Type

Security review

Client

Lindy Labs

Date

2023-07

Domain

Blockchain

Effort

8 wks

Section

Ethereum/EVM

Trail of Bits's security review of Lindy Labs (Jul 2023) identified 6 issues: 1 high, 2 low, and 3 informational.

Findings · 6

  1. 1 receiveFlashLoan does not account for fees High
  2. 2 Reward token distribution rate can diverge from reward token balance Low
  3. 3 Miscalculation in beforeWithdraw can leave the vault with less than minimum float Informational
  4. 4 Last user in scWETHv2 vault will not be able to withdraw their funds Low
  5. 5 Lido stake rate limit could lead to unexpected reverts Informational
  6. 6 Chainlink oracles could return stale price data Informational

Findings extracted from the published report PDF. See the full report below for details and remediation.

Related