SlowMist Says ERC721R Sample Contract Flaw is Essentially Due to Excessive Owner Privileges
Apr 12,2022,19:48
Core Go Pocket developer Ben said a flaw in the ERC721R sample contract could be exploited by the project to perform RugPull. According to the preliminary analysis of the SlowMist security team, this flaw is essentially due to the problem of excessive owner permissions. In the ERC721R example contract, the owner can arbitrarily set the NFT address returned by the user via the setRefundAddress function.
SourceDisclaimer: This platform includes third party opinions. We do not endorse their accuracy. Digital asset prices can be volatile. Do your own insights. See full terms here LastTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other NetworksTerra Bridge Adds Support for Avalanche, Solana, Fantom and Other Networks