Juicebox contest - 0x5rings's results

The decentralized fundraising and treasury protocol.

General Information

Platform: Code4rena

Start Date: 18/10/2022

Pot Size: $50,000 USDC

Total HM: 13

Participants: 67

Period: 5 days

Judge: Picodes

Total Solo HM: 7

Id: 172

League: ETH

Juicebox

Findings Distribution

Researcher Performance

Rank: 60/67

Findings: 1

Award: $25.96

Gas:
grade-b

🌟 Selected for report: 0

🚀 Solo Findings: 0

Awards

25.9629 USDC - $25.96

Labels

bug
G (Gas Optimization)
grade-b
G-14

External Links

_safemint() should be used rather than _mint() wherever possible

Files Found:

There are 4 instances of this issue.

  • File: contracts/JBTiered721Delegate.sol - line 461

  • File: contracts/JBTiered721Delegate.sol - line 504

  • File: contracts/JBTiered721Delegate.sol - line 635

  • File: contracts/JBTiered721Delegate.sol - line 677

Mitigation:

_mint() is discouraged in favor of _safeMint() which ensures that the recipient is either an EOA or implements IERC721Receiver.


#0 - c4-judge

2022-11-08T17:46:51Z

Picodes marked the issue as grade-b

#1 - c3phas

2022-12-03T19:29:03Z

Shouldn't this be under QA

AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter