Error 403 Forbidden

PATCH https://www.all4team.de/api/product-media/019c209e7ced7143a95ec9e272503406?_response=detail

ApiController :: update

Request

GET Parameters

Key Value
_response
"detail"

POST Parameters

Key Value
mediaId
"7fe25444b0c2401d9e0e25b631a040f4"
position
1
productId
"aa9d3de911164bce8fdd6b74ffb73cf2"

Uploaded Files

No files were uploaded

Request Attributes

Key Value
_controller
"Shopware\Core\Framework\Api\Controller\ApiController::update"
_cspNonce
"tJ/Yzi4inIU="
_route
"api.product_media.update"
_routeScope
[
  "api"
]
_route_params
[
  "entityName" => "product-media"
  "path" => "019c209e7ced7143a95ec9e272503406"
]
_stopwatch_token
"b69935"
entityName
"product-media"
oauth_access_token_id
"98b3d7a1d8af37e95509227486b4309430b2062144b2d92ad2c55d80f9706f964c4040c208bfe38e"
oauth_client_id
"SWIABJLLUHDXAFVVREDNBEDDZG"
oauth_scopes
[
  "write"
]
oauth_user_id
""
path
"019c209e7ced7143a95ec9e272503406"
sw-context
Shopware\Core\Framework\Context {#1686
  #extensions: []
  #languageIdChain: [
    "2fbb5fe2e29a4d70aa5854ce7ce3e20b"
  ]
  #scope: "user"
  #rulesLocked: false
  #source: Shopware\Core\Framework\Api\Context\AdminApiSource {#1699 …}
  #ruleIds: []
  #currencyId: "b7d2554b0ce847cd82f3ac9bd1c0dfca"
  #versionId: "0fa91ce3e96a4bc2be4bd9ce752c3425"
  #currencyFactor: 1.0
  #considerInheritance: false
  #taxState: "gross"
  #rounding: Shopware\Core\Framework\DataAbstractionLayer\Pricing\CashRoundingConfig {#1687 …}
  #states: []
}

Request Headers

Header Value
accept
"application/vnd.api+json"
authorization
"Bearer eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJhdWQiOiJTV0lBQkpMTFVIRFhBRlZWUkVETkJFRERaRyIsImp0aSI6Ijk4YjNkN2ExZDhhZjM3ZTk1NTA5MjI3NDg2YjQzMDk0MzBiMjA2MjE0NGIyZDkyYWQyYzU1ZDgwZjk3MDZmOTY0YzQwNDBjMjA4YmZlMzhlIiwiaWF0IjoxNzcwMDg0MzA0LjAwOTk4NCwibmJmIjoxNzcwMDg0MzA0LjAwOTk4NiwiZXhwIjoxNzcwMDg0OTA0LjAwODgxLCJzdWIiOiIiLCJzY29wZXMiOlsid3JpdGUiXX0.AKlxB0kyfaemgAaMqG0mw7qL0l00-HZAYgrV29VT-T3j8HqwMf2-YljXVEArFrFlgyi6e_8OvdYpfeSsSUbu0w78R8N4OhzIpGUcbVSZjSfl493w3y-rBoKdILvV51zHS2hnlctCCd0cpcMa9-WEWVXzGMN3HDuEkHRPwtS_HHfZQD76_Yjvl0Fup-6CPqxqqfktwYVyya4WfYGdvu4lOqYwC1VTtp9EoRAosEj9JLjWXgSGmjAj9TJteUOJ2m2BGiD_3FvPlyphAgRgkXNTWj-B32HI-BvCK8A7ZGEbAgT4sgaOEuvXwnJQxOklXcyBl526Ju1E4jSyJD-Lv5wBoQ"
content-length
"106"
content-type
"application/json"
forwarded
"for="176.52.247.29";host="www.all4team.de";proto=https"
host
"www.all4team.de"
surrogate-capability
"symfony="ESI/1.0""
user-agent
"GuzzleHttp/7"
x-forwarded-for
"176.52.247.29"
x-php-ob-level
"1"

Request Content

Pretty

{
    "productId": "aa9d3de911164bce8fdd6b74ffb73cf2",
    "mediaId": "7fe25444b0c2401d9e0e25b631a040f4",
    "position": 1
}

Raw

{"productId":"aa9d3de911164bce8fdd6b74ffb73cf2","mediaId":"7fe25444b0c2401d9e0e25b631a040f4","position":1}

Response

Response Headers

Header Value
access-control-allow-headers
"Content-Type,Authorization,sw-context-token,sw-access-key,sw-language-id,sw-version-id,sw-inheritance,indexing-behavior,sw-include-seo-urls"
access-control-allow-methods
"GET,POST,PUT,PATCH,DELETE"
access-control-allow-origin
"*"
access-control-expose-headers
"Content-Type,Authorization,sw-context-token,sw-access-key,sw-language-id,sw-version-id,sw-inheritance,indexing-behavior,sw-include-seo-urls"
cache-control
"no-cache, private"
content-type
"application/json"
date
"Tue, 03 Feb 2026 02:08:29 GMT"
server-timing
""
x-debug-token
"6319e5"

Cookies

Request Cookies

No request cookies

Response Cookies

No response cookies

Session

Session Metadata

No session metadata

Session Attributes

No session attributes

Session Usage

0 Usages
Stateless check enabled

Session not used.

Flashes

Flashes

No flash messages were created.

Server Parameters

Server Parameters

Defined in .env

Key Value
APP_ENV
"dev"
APP_SECRET
"def000008bb8000e28e56921695e4fab65ec11af451433022ec1898934e462c2d3743daf8028d3c0c4cb59122d1bc8d5b6e9c2842a524d189be6ebabe2ad98c23284e051"
APP_URL
"https://www.all4team.de"
APP_URL_CHECK_DISABLED
"1"
BLUE_GREEN_DEPLOYMENT
"0"
COMPOSER_HOME
"/var/www/vhosts/all4team/html/var/cache/composer"
DATABASE_URL
"mysql://all4team:yae3tahmao0ish3ia4gahchaaP4Oog3g@127.0.0.1/all4team_shopware?unix_socket=/var/run/mysqld/mysqld.sock"
INSTANCE_ID
"BFKxCkV57SvEYj2V9nBRJcfYYcDBNhBl"
LOCK_DSN
"flock"
MAILER_DSN
"native://default"
MAILER_URL
"null://null"
MESSENGER_TRANSPORT_DSN
"amqp://all4team:eeHiazoh4neizie0eifahwah0chohb3e@localhost:5672/%2fall4team/messages"
OPENSEARCH_URL
"localhost:9200"
PROXY_URL
"http://localhost"
SHOPWARE_CACHE_ID
"a4t"
SHOPWARE_CDN_STRATEGY_DEFAULT
"id"
SHOPWARE_ES_ENABLED
"1"
SHOPWARE_ES_INDEXING_ENABLED
"1"
SHOPWARE_ES_INDEX_PREFIX
"sw_all4team"
SHOPWARE_ES_THROW_EXCEPTION
"1"
SHOPWARE_HTTP_CACHE_ENABLED
"1"
SHOPWARE_HTTP_DEFAULT_TTL
"7200"
SQL_SET_DEFAULT_SESSION_VARIABLES
"0"

Defined as regular env variables

Key Value
APP_DEBUG
"1"
CONTENT_LENGTH
"106"
CONTENT_TYPE
"application/json"
DOCUMENT_ROOT
"/var/www/vhosts/all4team/html/public"
HTTPS
"on"
HTTP_ACCEPT
"application/vnd.api+json"
HTTP_AUTHORIZATION
"Bearer eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJhdWQiOiJTV0lBQkpMTFVIRFhBRlZWUkVETkJFRERaRyIsImp0aSI6Ijk4YjNkN2ExZDhhZjM3ZTk1NTA5MjI3NDg2YjQzMDk0MzBiMjA2MjE0NGIyZDkyYWQyYzU1ZDgwZjk3MDZmOTY0YzQwNDBjMjA4YmZlMzhlIiwiaWF0IjoxNzcwMDg0MzA0LjAwOTk4NCwibmJmIjoxNzcwMDg0MzA0LjAwOTk4NiwiZXhwIjoxNzcwMDg0OTA0LjAwODgxLCJzdWIiOiIiLCJzY29wZXMiOlsid3JpdGUiXX0.AKlxB0kyfaemgAaMqG0mw7qL0l00-HZAYgrV29VT-T3j8HqwMf2-YljXVEArFrFlgyi6e_8OvdYpfeSsSUbu0w78R8N4OhzIpGUcbVSZjSfl493w3y-rBoKdILvV51zHS2hnlctCCd0cpcMa9-WEWVXzGMN3HDuEkHRPwtS_HHfZQD76_Yjvl0Fup-6CPqxqqfktwYVyya4WfYGdvu4lOqYwC1VTtp9EoRAosEj9JLjWXgSGmjAj9TJteUOJ2m2BGiD_3FvPlyphAgRgkXNTWj-B32HI-BvCK8A7ZGEbAgT4sgaOEuvXwnJQxOklXcyBl526Ju1E4jSyJD-Lv5wBoQ"
HTTP_FORWARDED
"for="176.52.247.29";host="www.all4team.de";proto=https"
HTTP_HOST
"www.all4team.de"
HTTP_USER_AGENT
"GuzzleHttp/7"
HTTP_X_FORWARDED_FOR
"176.52.247.29"
LSWS_EDITION
"Openlitespeed 1.8.2"
PATH
"/bin:/usr/bin"
PHP_SELF
"/index.php"
QUERY_STRING
"_response=detail"
REDIRECT_QUERY_STRING
"_response=detail"
REDIRECT_STATUS
"200"
REDIRECT_URL
"/api/product-media/019c209e7ced7143a95ec9e272503406"
REMOTE_ADDR
"127.0.0.1"
REMOTE_PORT
"28338"
REQUEST_METHOD
"PATCH"
REQUEST_TIME
1770084509
REQUEST_TIME_FLOAT
1770084509.7146
REQUEST_URI
"/api/product-media/019c209e7ced7143a95ec9e272503406?_response=detail"
SCRIPT_FILENAME
"/var/www/vhosts/all4team/html/public/index.php"
SCRIPT_NAME
"/index.php"
SERVER_ADDR
"37.221.195.102"
SERVER_ADMIN
""
SERVER_NAME
"www.all4team.de"
SERVER_PORT
"443"
SERVER_PROTOCOL
"HTTP/1.1"
SERVER_SOFTWARE
"LiteSpeed"
SSL_CIPHER
"TLS_AES_256_GCM_SHA384"
SSL_CIPHER_ALGKEYSIZE
"256"
SSL_CIPHER_USEKEYSIZE
"256"
SSL_PROTOCOL
"TLSv1.3"
SYMFONY_DOTENV_PATH
"/var/www/vhosts/all4team/html/.env"
SYMFONY_DOTENV_VARS
"APP_ENV,APP_URL,APP_SECRET,INSTANCE_ID,BLUE_GREEN_DEPLOYMENT,DATABASE_URL,MAILER_URL,OPENSEARCH_URL,SHOPWARE_ES_ENABLED,SHOPWARE_ES_INDEXING_ENABLED,SHOPWARE_ES_INDEX_PREFIX,SHOPWARE_ES_THROW_EXCEPTION,PROXY_URL,SHOPWARE_HTTP_CACHE_ENABLED,SHOPWARE_HTTP_DEFAULT_TTL,LOCK_DSN,APP_URL_CHECK_DISABLED,SHOPWARE_CDN_STRATEGY_DEFAULT,MESSENGER_TRANSPORT_DSN,MAILER_DSN,COMPOSER_HOME,SQL_SET_DEFAULT_SESSION_VARIABLES,SHOPWARE_CACHE_ID"
X-LSCACHE
"on,crawler"