Beginner FriendlyFoundryNFT
100 EXP
View results
Submission Details
Severity: high
Valid

Missing randomness due to the use of `block.timestamp`

Summary

Hashing block.timestamp, block.prevrandao, msg.sender will give a predictable number which is not a good random number. Malicious users can manipulate these numbers to win the battle.

Vulnerability Details

Impact

Loss of fund and bad user experience.

Tools Used

manual review and Foundry.

Recommendations

Updates

Lead Judging Commences

inallhonesty Lead Judge
over 1 year ago
inallhonesty Lead Judge over 1 year ago
Submission Judgement Published
Validated
Assigned finding tags:

Weak Randomness

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.