Description
Members of deleted tiers are left with tokens that no longer correspond to valid tiers
Tier amounts can be set lower than currently minted amounts, creating an invalid state
No validation for existing token holders when removing tiers
Could create situations where members hold tokens for non-existent tiers
Proof Of Concept
Attack Scenario:
DAO admin updates tiers reducing tier count from 4 to 2
Members holding tokens for tiers 3 and 4 are now stranded
Their tokens become worthless but still exist on-chain
No compensation mechanism exists
Impact
Stranded tokens for deleted tiers
Broken token economics
Invalid DAO state
Member privileges could be revoked without compensation
Potential for griefing attacks
Recommendation
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.