mediumReentrancyEVM-Solidity
Collective: `ERC20TokenEmitter::buyToken` function mints more tokens to users than it should do
- Payout
- $0
- Protocol
- Collective
- Disclosed
- Feb 8, 2024
- Source
- code4rena
The Collective protocol's buyToken function contains a logic error in its VRGDA-based token issuance mechanism. Because token minting amounts for creators and buyers are calculated independently using the current total supply before that supply is updated, the …
Similar reports
- No close matches yet.
References
- https://github.com/code-423n4/2023-12-revolutionprotocol-findings/issues/194
- https://github.com/code-423n4/2023-12-revolutionprotocol-findings
This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.