Jump to content

This is a kind of security flaw...


Ayacca

Recommended Posts

Hi

 

It is smart and normal to decrement a stock when the payment has not effectively been made?

I simulated a purchasing on my shop and found out that the stock was decremented while it should not have.

 

Someone could simulate mass purchasings(using a php script) on a competitor shop, using bank paiement transfer or check(but not really making this transfer, not really paying), bringing its stock to 0 and preventing this shop to really sell...

 

This is a kind of security flaw.

 

 

isnt an security updated needed...?

 

 

Subsidiary question: how to know the original stock of a product?

Link to comment
Share on other sites

Think about it this way. You have a shop that makes custom scarves and you only have 5 of one in stock. I order 4 through bankwire and send my check. Then the next day before my check arrives another guy orders 3 and sends his check. You have sold 7, you only have 5.

 

Bankwire and check are not really great payment methods for using for e-commerce for this reason.

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...