P1 Vulnerability by Bypassing the membership payment page

Viktor Mares
4 min readMar 12, 2023

Hi Everyone,

Today I want to showcase one of the most recent vulnerabilities which is related to the enforcement of server-side security on the client-side and why this is bad.

Paywall blocking you? Here is a friend link: https://medium.com/@mares.viktor/p1-vulnerability-by-bypassing-the-membership-payment-page-3289e09262c1?sk=a86f3c021174dbb501f6e7a4241a2903

As usual, we will anonymize our target and give the website a domain of ‘example.com’. The website allows us to register as…

