DatingDapp

First Flight #33
Beginner FriendlyFoundrySolidityNFT
100 EXP
View results
Submission Details
Severity: high
Invalid

Uncontrolled MultiSig Wallet Creation found in `LikeRegistry::matchRewards()` function

Description: Unrestricted creation of MultiSig wallets for matched users without additional verification inside matchRewards() function

Impact: Potential creation of multiple wallets, resource consumption

Proof of Concept:

function spamMultiSigWallets() external {
// Repeatedly create matches to generate multiple wallets
likeUser(multipleAddresses);
}

Recommended Mitigation:

  • Implement wallet creation limits

  • Add additional verification for match criteria

  • Create a controlled wallet generation mechanism

Updates

Appeal created

n0kto Lead Judge 6 months ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.