diff --git a/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml b/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml index 03d92ecab..49d40a5c4 100644 --- a/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml +++ b/BTCPayServer/Views/Apps/UpdatePointOfSale.cshtml @@ -210,7 +210,7 @@

Never trust anything but id, ignore the other fields completely, an attacker can spoof those, they are present only for backward compatibility reason: