razorpay / razorpay-ruby

Razorpay Ruby SDK
https://rubygems.org/gems/razorpay
MIT License
64 stars 59 forks source link

Signature Security Issue of RazorPay WebHook #244

Open Aprameya123 opened 5 months ago

Aprameya123 commented 5 months ago

The developer is able to access the signature of WebHook Request

Let me give a brief on why I think this is a security issue

Consider a software solution integrated with RazorPay