Token IDs should ideally be unpredictable to prevent front-running and gaming of rare traits or specific token numbers.
The contract uses sequential, predictable token IDs starting from 0, making it easy for attackers to predict and potentially front-run specific token mints.
Likelihood:
Token IDs are always sequential and predictable for every mint
Attackers can easily predict which token ID will be minted next
Impact:
Potential front-running if specific token IDs have special significance
Gaming of the system if certain token numbers are more valuable
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.