From 2898b54eaa7cc8b39f35ef55fb387e4145026861 Mon Sep 17 00:00:00 2001 From: Hongrui Fang Date: Tue, 8 Nov 2022 21:53:06 +0800 Subject: [PATCH] update changelog --- CHANGELOG.md | 24 ++++++++++++++++++++++-- 1 file changed, 22 insertions(+), 2 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 70dbaee..75888eb 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -6,6 +6,26 @@ This format is based on [Keep A Changelog](https://keepachangelog.com/en/1.0.0). ### Modified +- Fix several vulnerabilities and bugs found by auditors. + + Including: + - A bug that allows multiple GATs to be minted into a single UTxO and sent + to a malicious script. + - A bug that allows delegates to create or cosign proposals with delegated + stakes. + - Potential DDoS attack: calling `UnlockStake` without any stake. + - Potential DDoS attack: calling `UnlockStake` on a `VotingReady` proposal + without actually changing the votes. + - Ignore staking credential in proposal, stake and governor. + - Improve naming and doc strings to avoid confusion. + + Included by [#208](https://github.com/Liqwid-Labs/agora/pull/208) + +- Allow delegates to vote and retract vote with their stakes along side with + stakes delegated to them in the same transaction. + + Included by [#208](https://github.com/Liqwid-Labs/agora/pull/208) + - Fix several vulnerabilities and bugs found in both proposal and governor scripts. Including: @@ -150,7 +170,7 @@ the stake validator easily. The behaviour of the default stake validator remains Included by [#146](https://github.com/Liqwid-Labs/agora/pull/146). -- Draft phase and cosigning for Proposals. +- Draft phase and cosigning for Proposals. Included by [#136](https://github.com/Liqwid-Labs/agora/pull/136). @@ -158,7 +178,7 @@ the stake validator easily. The behaviour of the default stake validator remains Included by [#134](https://github.com/Liqwid-Labs/agora/pull/134). -- Fixed bug that made it impossible to create proposals. Added new stake locking mechanism for creating proposals. +- Fixed bug that made it impossible to create proposals. Added new stake locking mechanism for creating proposals. Included by [#142](https://github.com/Liqwid-Labs/agora/pull/142).