DatingDapp

First Flight #33
Beginner FriendlyFoundrySolidityNFT
100 EXP
View results
Submission Details
Severity: high
Invalid

Vulnerable Fee Mechanism inside `LikeRegistry::matchRewards()` function

Description: Fixed fee calculation with potential manipulation in matchRewards() method

Impact: Potential financial exploitation through fee calculations

Proof of Concept:

function exploitFeeCalculation() external {
// Manipulate rewards by creating multiple matches
likeUser(maliciousAddress1);
likeUser(maliciousAddress2);
}

Recommended Mitigation:

  • Implement dynamic fee calculation

  • Add comprehensive fee validation

  • Create more robust reward distribution mechanism

Updates

Appeal created

n0kto Lead Judge 6 months ago
Submission Judgement Published
Invalidated
Reason: Too generic

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.