Helper contract provides token amounts for JSON generation.
Unrestricted helper.run() executes arbitrary code, enabling supply chain attacks.
Likelihood:
High when Helper contract is modifiable
Guaranteed if attacker controls helper source
Certain during dependency compromise
Impact:
Malicious token amount manipulation
Secret data exfiltration via side channels
Permanent filesystem corruption
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.