voting-power-manipulation

2 articles
sort: new top best
clear filter
0 7/10
vulnerability

A round-down vulnerability in Astroport's Staking.rs contract allows attackers to mint zero xASTRO tokens by exploiting the absence of minimum liquidity requirements, breaking staking functionality and enabling governance control through voting power monopolization. The fix involves implementing a MINIMUM_LIQUIDITY constraint similar to Uniswap V2.

Astroport ChainLight SunSec Immunefi xASTRO ASTRO Staking.rs Uniswap V2
defihacklabs.substack.com · ChainLight · 6 hours ago · details
0 6/10
bug-bounty

A critical vulnerability in Q Blockchain's voting mechanism allows attackers to manipulate voting power through improper handling of voting weight delegation and locking logic, particularly in the VotingWeightProxy contract's interaction with voting delegation. The bug was discovered during a bug bounty hunt and rewarded $50,000.

Q Blockchain Immunefi RootsVoting.sol VotingWeightProxy IVoting
medium.com · Blockian · 6 hours ago · details