diff --git a/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml b/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml index 615feec5e..174e2a689 100644 --- a/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml +++ b/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml @@ -208,7 +208,7 @@

Never trust anything but id, ignore the other fields completely, an attacker can spoof those, they are present only for backward compatibility reason: