Project

One World
NFTDeFi
15,000 USDC
View results
Submission Details
Severity: high
Invalid

lack of check currency in whitelist when calling `joinDAO`

Vulnerability Details

when calling joinDAO()not check is currency which transfer from _msgSender since tierPrice is only a number value but not a currency value

https://github.com/Cyfrin/2024-11-one-world/blob/1e872c7ab393c380010a507398d4b4caca1ae32b/contracts/dao/MembershipFactory.sol#L140-L150

Impact

This could then lead to a freezing of funds and a rebalancing between the NFTs issued and the amount of funds in the pool

Tools Used

manual

Recommendations

add check of whitelist

Updates

Lead Judging Commences

0xbrivan2 Lead Judge 9 months ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement
0xbrivan2 Lead Judge 9 months ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Appeal created

hajime Submitter
9 months ago
0xbrivan2 Lead Judge
9 months ago
0xbrivan2 Lead Judge 9 months ago
Submission Judgement Published
Invalidated
Reason: Lack of quality

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.