The claim function lacks reentrancy protection.
The claim function interacts with an external token contract (IERC20.transfer), which could be exploited for reentrancy attacks.
Potential reentrancy attacks if the token contract is malicious.
Tool
Manual Review
Add @nonreentrant to the claim function:
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.