-
Notifications
You must be signed in to change notification settings - Fork 0
Eth sent to Timelock will be locked in current implementation #80
Copy link
Copy link
Open
Labels
2 (Med Risk)Assets not at direct risk, but function/availability of the protocol could be impacted or leak valueAssets not at direct risk, but function/availability of the protocol could be impacted or leak valuebugSomething isn't workingSomething isn't workingsponsor acknowledgedTechnically the issue is correct, but we're not going to resolve it for XYZ reasonsTechnically the issue is correct, but we're not going to resolve it for XYZ reasons
Metadata
Metadata
Assignees
Labels
2 (Med Risk)Assets not at direct risk, but function/availability of the protocol could be impacted or leak valueAssets not at direct risk, but function/availability of the protocol could be impacted or leak valuebugSomething isn't workingSomething isn't workingsponsor acknowledgedTechnically the issue is correct, but we're not going to resolve it for XYZ reasonsTechnically the issue is correct, but we're not going to resolve it for XYZ reasons
Handle
defsec
Vulnerability details
Impact
Eth sent to Timelock will be locked in current implementation. I came across this problem while playing around with the governance contract.
Proof of Concept
Tools Used
Recommended Mitigation Steps
Consider implementing the following code.
## Reference
https://github.com/compound-finance/compound-protocol/pull/177/files