Kai Finance offers innovative yield farming solutions for both passive and active investors. Whether you prefer steady, low-maintenance income or want to explore strategies with higher yield potential, our platform provides secure, transparent access to the best of DeFi.
| Target | Type | Severity |
|---|---|---|
https://github.com/kunalabs-io/sui-smart-contracts/tree/master/kai/leverage/core Copy | Smart Contract | Critical |
https://github.com/kunalabs-io/sui-smart-contracts/tree/master/access-management Copy | Smart Contract | Critical |
We are looking for evidence and reasons for incorrect behavior of the smart contract, which could cause unintended functionality:
Only the source code of live, deployed Move modules that correspond to the following original on-chain package IDs - and their upgrades - are in scope. This includes any versions deployed through a valid upgrade mechanism under the same package ID.
Reports on modules that are not deployed, not used in production, or not part of the listed package IDs or their valid upgrades will be considered out of scope.
In-scope Original Package IDs:
0x51e0ccce48f0763f98f1cb4856847c2e1531adacada99cdd7626ab999db57523 Leverage Core0x0d9dd55ac7eb676dc78f7d0ae3bc5529d7fd6b52ac0d0edb2d7820c52d080026 Access ManagementNote: If a vulnerability existed in a previous version of a package but has already been fixed in a later upgrade, it is not eligible for a bounty. Only valid vulnerabilities affecting the currently live, deployed version of the package are in scope.
We are happy to thank everyone who submits valid reports which help us improve the security. However, only those that meet the following eligibility requirements may receive a monetary reward: