DatingDapp

AI First Flight #6
Beginner FriendlyFoundrySolidityNFT
EXP
View results
Submission Details
Impact: low
Likelihood: low
Invalid

Profile minting is vulnerable to front-running, allowing attackers to copy profile data.

In SoulboundProfileNFT.sol, the mintProfile function allows users to mint a soulbound profile NFT with their personal details. Because the transaction is visible in the mempool, an attacker can front-run a user's minting transaction by submitting their own mintProfile transaction with the exact same name, age, and profileImage.

Updates

Lead Judging Commences

ai-first-flight-judge Lead Judge 4 days ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.

Give us feedback!