The number of members in a tier can exceed tier.amount due to failure to check for tier amounts when ugrading tiers
The check for tier.minted against tier.amount was introduced in the joinDao function to prevent memberships in a tier from exceeding the defined "amount" limit as a mitigation from a previous audit. However, when upgrading from a previous tier to a new tier theres no check for if the declared "amonut" limit or that tier has been reached. Which can cause more members in a particular tier and Dao to exceed the intended amount.
There can be excess members in a Dao tier, which goes against the Dao creator's specifications.
Manual Review
Add a check for tier amount in the upgradeTier function
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.