GoPlus Security Research Institute has uncovered significant security vulnerabilities in several x402 ecosystem projects. A comprehensive scan of over 30 projects, including those flagged by the community in Binance Wallet and OKX Wallet, revealed issues such as over-authorization, signature replay, and unlimited token issuance. Key projects identified with risks include FLOCK, where the transferERC20 function allows the owner to extract any number of tokens, and x420, which can mint tokens without limit via the crosschainMint function. Other projects like U402, MRDN, and PENG also exhibit vulnerabilities, such as unlimited coin minting and bypassing allowance checks, posing potential threats to users and investors.