CharityRegistry::isVerified is used to check if a charity is verified but the function checks the address in registeredCharities instead of verifiedCharities
Run this test to validate the issue
Unverified charities will be marked as verified
Likelyhood: High, the function returns registered charities instead of verified ones. Impact: High, Any charities can be registered by anyone and will be declared as verified by this function bypassing verification.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.