> The obvious problem with this is that we’re given a reference to the product, and not the product itself.
Which isn't the most obvious problem with this example.
You might want to read: https://www.owasp.org/index.php/REST_Security_Cheat_Sheet
> The obvious problem with this is that we’re given a reference to the product, and not the product itself.
Which isn't the most obvious problem with this example.
You might want to read: https://www.owasp.org/index.php/REST_Security_Cheat_Sheet