compound-protocol

1 article
sort: new top best
clear filter
0 7/10
vulnerability

Compound's liquidation mechanism fails to validate whether seized assets are actually held as collateral by the borrower, allowing liquidators to seize any user cTokens regardless of whether they were entered into markets. This can result in unauthorized asset seizure even for assets the user explicitly exited from.

Compound CVE-2021-26119
trust-security.xyz · Trust · 23 hours ago · details