Pinned
๐ Exciting news! Omniscia.io is proud to have collaborated with the @vyperlang team on this technical deep-dive, revealing the intricacies of the recent Vyper compiler bug exploited in last week's @CurveFinance breach.
๐ As always, follow @Omniscia_sec to stay up
Vyper vulnerability post-mortem report regarding the events of this past week: hackmd.io/@vyperlang/HJUโฆ
tl;dr -
versions affected: v0.2.15, v0.2.16, v0.3.0
vulnerability in brief: cross-function re-entrancy is possible on contracts compiled with the susceptible versions





