Description
OpenZeppelin Contracts is a library for secure smart contract development. The ERC721Consecutive contract designed for minting NFTs in batches does not update balances when a batch has size 1 and consists of a single token. Subsequent transfers from the receiver of that token may overflow the balance as reported by `balanceOf`. The issue exclusively presents with batches of size 1. The issue has been patched in 4.8.2.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0941 | OpenZeppelin Contracts is a library for secure smart contract development. The ERC721Consecutive contract designed for minting NFTs in batches does not update balances when a batch has size 1 and consists of a single token. Subsequent transfers from the receiver of that token may overflow the balance as reported by `balanceOf`. The issue exclusively presents with batches of size 1. The issue has been patched in 4.8.2. |
Github GHSA |
GHSA-878m-3g6q-594q | OpenZeppelin Contracts contains Incorrect Calculation |
References
History
Tue, 25 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-02-25T15:02:45.293Z
Reserved: 2023-02-23T23:22:58.575Z
Link: CVE-2023-26488
Updated: 2024-08-02T11:53:53.676Z
Status : Modified
Published: 2023-03-03T22:15:09.897
Modified: 2024-11-21T07:51:37.320
Link: CVE-2023-26488
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA