All reports
highReentrancyEVM-Solidity

AI Arena: Player can mint more fighter NFTs during claim of rewards by leveraging reentrancy on the `claimRewards() function`

Payout
$0
Protocol
AI Arena
Disclosed
May 14, 2024
Source
code4rena

The AI Arena MergingPool contract contains a reentrancy vulnerability in its reward claiming mechanism. By utilizing a smart contract to claim rewards, an attacker can trigger a callback during the NFT minting process. This allows the attacker to repeatedly ca …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.