CVE-2021-3004

HIGH

Stable Yield Credit - Info Disclosure

Title source: llm
STIX 2.1

Description

The _deposit function in the smart contract implementation for Stable Yield Credit (yCREDIT), an Ethereum token, has certain incorrect calculations. An attacker can obtain more yCREDIT tokens than they should.

Scores

CVSS v3 7.5
EPSS 0.0021
EPSS Percentile 43.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-682
Status published
Products (1)
stableyieldcredit_project/stableyieldcredit
Published Jan 03, 2021
Tracked Since Feb 18, 2026