The burn function emits msg.sender as the "from" address instead of the actual token owner, providing incorrect event data.
Likelihood:
Every burn operation will emit incorrect event data
Off-chain systems tracking burns will receive the wrong information
This occurs on every successful burn call
Impact:
Incorrect historical data in event logs
Off-chain applications may malfunction
Audit trails become unreliable
placeBid emits AuctionSettled even though the auction hasn’t ended, causing misleading event logs.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.