Vulnerabilities (CVE)

Filtered by vendor Compound Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-20809 1 Compound 1 Price Oracle 2024-02-04 5.0 MEDIUM 7.5 HIGH
The price oracle in PriceOracle.sol in Compound Finance Compound Price Oracle 1.0 through 2.0 allows a price poster to set an invalid asset price via the setPrice function, and consequently violate the intended limits on price swings.