It doesn't even check if user is authenticated, which is a big security issue.
It doesn't even check if user is authenticated, which is a big security issue.