The sendERC20 function doesn't check if _tokenAddress
is a valid ERC-20 token address.
Calling a zero address can cause the execution to fail reverting the entire transaction.
Potential funds loss
Wasting gas
Manual review
Fixed code:
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.