The mintEgg
function allows the assigned game contract to mint NFTs without any limitations. There is no restriction on the number of NFTs that can be minted, nor is there a check to ensure that a token ID has not already been used.
The assigned gameContract
can mint an unlimited number of NFTs, leading to inflation.
If gameContract
is compromised, an attacker can mass-mint NFTs.
No check ensures tokenId
is unique, leading to possible overwriting or failed transactions.
Maual review
Ensure token uniqueness before minting
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.