Beginner FriendlyFoundry
100 EXP
View results
Submission Details
Severity: high
Invalid

The owner can participate in vote

Summary

The owner can participate in vote and can manipulate result if he/she want.

Vulnerability Details

In the allowList the owner can put his own address and can vote by his opinion and manipulate the result of vote.

Impact

Let imagine that allowed participants are 5. One of them is owner address. User 1 vote true and User 2 vote false. Owner can vote in his interest.Whit 3 of 5 passed the condition for more of 51% quote. Vote is closing and the contract balance will be send back to owner.

Tools Used

Manual review, Foundry

Recommendations

Check if voter is not equal to owner address in constructor inicialization

Updates

Lead Judging Commences

0xnevi Lead Judge
over 1 year ago
0xnevi Lead Judge over 1 year ago
Submission Judgement Published
Invalidated
Reason: Known issue

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.