6
Djeisen
8y

There was a hidden input with the calculated price from the client. It was passed to the backend. It was not validated on the backend. The customer was charged that amount. It would have taken a long time to fix...

Comments
Add Comment