Mystery Box

First Flight #25
Beginner FriendlyFoundry
100 EXP
View results
Submission Details
Severity: low
Invalid

Owner hardcoded in constructor

Summary

Owner hardcoded in constructor.

Vulnerability Details

The owner is set to msg.sender in the constructor, which means the contract deployer is automatically the owner.

Impact

This could be a risk if the deployment was not intended to be owned by the deployer.

Tools Used

Manual review.

Recommendations

Provide flexibility by allowing the owner to be set during deployment if needed, or ensure deployment is done by the correct entity.

Updates

Appeal created

inallhonesty Lead Judge about 1 year ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.

Give us feedback!