Missing Access Control on
approveCollateralTokenForAave-https://github.com/Cyfrin/2025-01-diva/blob/1b6543768c341c2334cdff87b6dd627ee2f62c89/contracts/src/AaveDIVAWrapper.sol#L202C1-L207C6
The approveCollateralTokenForAave and batchApproveCollateralTokenForAave functions are callable by anyone
recommendation- Add onlyOwner modifier to both functions.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.