This is a summary of the OWASP YouTube video I watched, hosted by Katie Paxton:
Check if the user has access to the resource being edited. You can check this by:
- Logging out and trying to access the resource OR
- Logging with a different user credential and try to edit the resource of someone else