Maybe, but even if SC called are disabled, there is method that you just discovered allowing a SC to call another SC pretending to be a user.
Instead of just qualifying "bad code", you can just warn devs of this possibility ?
indeed. and also speaking about bad quality code, what do you think about the attacker is hiding his money stolen from all the projects in plain sight? https://github.com/ElrondNetwork/api.elrond.com/issues/666
indeed. and also speaking about bad quality code, what do you think about the attacker is hiding his money stolen from all the projects in plain sight? https://github.com/ElrondNetwork/api.elrond.com/issues/666