OpenZeppelin Contracts is a library for secure smart contract development. The ERC721Consecutive contract designed for minting NFTs in batches does not update balances when a batch has size 1 and consists of a single token. Subsequent transfers from the receiver of that token may overflow the balance as reported by `balanceOf`. The issue exclusively presents with batches of size 1. The issue has been patched in 4.8.2.
History

Tue, 25 Feb 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2023-03-03T21:08:34.886Z

Updated: 2025-02-25T15:02:45.293Z

Reserved: 2023-02-23T23:22:58.575Z

Link: CVE-2023-26488

cve-icon Vulnrichment

Updated: 2024-08-02T11:53:53.676Z

cve-icon NVD

Status : Modified

Published: 2023-03-03T22:15:09.897

Modified: 2024-11-21T07:51:37.320

Link: CVE-2023-26488

cve-icon Redhat

No data.