API Unauthorized Access and Data Leak
POST /users/123456/
{ firstName: 'Foo', isAdmin: true }GET /users/123456/
{ firstName: 'Foo', bankCard: { number: '...', ... } }Last updated
POST /users/123456/
{ firstName: 'Foo', isAdmin: true }GET /users/123456/
{ firstName: 'Foo', bankCard: { number: '...', ... } }Last updated