Platform: Code4rena
Start Date: 21/12/2021
Pot Size: $30,000 USDC
Total HM: 20
Participants: 20
Period: 5 days
Judge: Jack the Pug
Total Solo HM: 13
Id: 70
League: ETH
Rank: 14/20
Findings: 1
Award: $141.51
๐ Selected for report: 0
๐ Solo Findings: 0
141.5133 USDC - $141.51
cccz
The mintSynth function and the mintFungible function are not verified from==msg.sender, causing anyone to use other peopleโs tokens to mint Synth or LP tokens for themselves
Manual analysis
Add the following code to the mintSynth function and mintFungible function
require(from == msg.sender);
#0 - jack-the-pug
2022-03-12T04:17:39Z
Dup of #147