Error 403 Forbidden

PATCH https://www.all4team.de/api/product-media/019ef8f57ace704986fc0a0443e0b80c?_response=detail

ApiController :: update

Request

GET Parameters

Key Value
_response
"detail"

POST Parameters

Key Value
mediaId
"22efe2c102e44fbe94d6a8a1fad4de0d"
position
5
productId
"0193522354da727dae540b1260e1d900"

Uploaded Files

No files were uploaded

Request Attributes

Key Value
_controller
"Shopware\Core\Framework\Api\Controller\ApiController::update"
_cspNonce
"IpZ0xHxCcsE="
_route
"api.product_media.update"
_routeScope
[
  "api"
]
_route_params
[
  "entityName" => "product-media"
  "path" => "019ef8f57ace704986fc0a0443e0b80c"
]
_stopwatch_token
"8a43a4"
entityName
"product-media"
oauth_access_token_id
"09c84c350710c83ae5e5c29a750f4d0809643cb9106526a7e8247f192c1f52083e45ab4a69952635"
oauth_client_id
"SWIABJLLUHDXAFVVREDNBEDDZG"
oauth_scopes
[
  "write"
]
oauth_user_id
""
path
"019ef8f57ace704986fc0a0443e0b80c"
sw-context
Shopware\Core\Framework\Context {#1686
  #extensions: []
  #languageIdChain: [
    "2fbb5fe2e29a4d70aa5854ce7ce3e20b"
  ]
  #scope: "user"
  #rulesLocked: false
  #source: Shopware\Core\Framework\Api\Context\AdminApiSource {#1699 …}
  #ruleIds: []
  #currencyId: "b7d2554b0ce847cd82f3ac9bd1c0dfca"
  #versionId: "0fa91ce3e96a4bc2be4bd9ce752c3425"
  #currencyFactor: 1.0
  #considerInheritance: false
  #taxState: "gross"
  #rounding: Shopware\Core\Framework\DataAbstractionLayer\Pricing\CashRoundingConfig {#1687 …}
  #states: []
}

Request Headers

Header Value
accept
"application/vnd.api+json"
authorization
"Bearer eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJhdWQiOiJTV0lBQkpMTFVIRFhBRlZWUkVETkJFRERaRyIsImp0aSI6IjA5Yzg0YzM1MDcxMGM4M2FlNWU1YzI5YTc1MGY0ZDA4MDk2NDNjYjkxMDY1MjZhN2U4MjQ3ZjE5MmMxZjUyMDgzZTQ1YWI0YTY5OTUyNjM1IiwiaWF0IjoxNzgyMzYwNDQ2Ljc5MzUyLCJuYmYiOjE3ODIzNjA0NDYuNzkzNTI0LCJleHAiOjE3ODIzNjEwNDYuNzg2NDI2LCJzdWIiOiIiLCJzY29wZXMiOlsid3JpdGUiXX0.Moczm5l6WIO_PiLBGwOZdQYUBgoms5k1ZQ4-gpFPJSPLwqS2CrYLojNazsuNApBuCbaD2Ai8XtSWCsiRQwqCwgSkoSmvwfqKcjT4AUHOTwjCeBDgE_WnQaEYNHtvTHDKl_WNPOk1_cS2JMcYuy2o4guwQdPfwcgdUtfYmEEV6zhB_DcaUdKohyCO7FGCKwnwEV0bjbM4NuQKhi4skTprcyRfbKdcratwgJlFGmEwlX5MMX52iI9qxq7mfFpS_heAGSxs6m3pdHf2GNCNmTdoYk4zkQ4AhBmh9xbK3IApKhC1wlkiEwed_qYG18sXmuV40almIIWqcAAV8ayzdfVDuw"
content-length
"106"
content-type
"application/json"
forwarded
"for="176.52.247.29";host="www.all4team.de";proto=https"
host
"www.all4team.de"
surrogate-capability
"symfony="ESI/1.0""
user-agent
"GuzzleHttp/7"
x-forwarded-for
"176.52.247.29"
x-php-ob-level
"1"

Request Content

Pretty

{
    "productId": "0193522354da727dae540b1260e1d900",
    "mediaId": "22efe2c102e44fbe94d6a8a1fad4de0d",
    "position": 5
}

Raw

{"productId":"0193522354da727dae540b1260e1d900","mediaId":"22efe2c102e44fbe94d6a8a1fad4de0d","position":5}

Response

Response Headers

Header Value
access-control-allow-headers
"Content-Type,Authorization,sw-context-token,sw-access-key,sw-language-id,sw-version-id,sw-inheritance,indexing-behavior,sw-include-seo-urls"
access-control-allow-methods
"GET,POST,PUT,PATCH,DELETE"
access-control-allow-origin
"*"
access-control-expose-headers
"Content-Type,Authorization,sw-context-token,sw-access-key,sw-language-id,sw-version-id,sw-inheritance,indexing-behavior,sw-include-seo-urls"
cache-control
"no-cache, private"
content-type
"application/json"
date
"Thu, 25 Jun 2026 04:09:46 GMT"
server-timing
""
x-debug-token
"fa1f07"

Cookies

Request Cookies

No request cookies

Response Cookies

No response cookies

Session

Session Metadata

No session metadata

Session Attributes

No session attributes

Session Usage

0 Usages
Stateless check enabled

Session not used.

Flashes

Flashes

No flash messages were created.

Server Parameters

Server Parameters

Defined in .env

Key Value
APP_ENV
"dev"
APP_SECRET
"def000008bb8000e28e56921695e4fab65ec11af451433022ec1898934e462c2d3743daf8028d3c0c4cb59122d1bc8d5b6e9c2842a524d189be6ebabe2ad98c23284e051"
APP_URL
"https://www.all4team.de"
APP_URL_CHECK_DISABLED
"1"
BLUE_GREEN_DEPLOYMENT
"0"
COMPOSER_HOME
"/var/www/vhosts/all4team/html/var/cache/composer"
DATABASE_URL
"mysql://all4team:yae3tahmao0ish3ia4gahchaaP4Oog3g@127.0.0.1/all4team_shopware?unix_socket=/var/run/mysqld/mysqld.sock"
INSTANCE_ID
"BFKxCkV57SvEYj2V9nBRJcfYYcDBNhBl"
LOCK_DSN
"flock"
MAILER_DSN
"native://default"
MAILER_URL
"null://null"
MESSENGER_TRANSPORT_DSN
"amqp://all4team:eeHiazoh4neizie0eifahwah0chohb3e@localhost:5672/%2fall4team/messages"
OPENSEARCH_URL
"localhost:9200"
PROXY_URL
"http://localhost"
SHOPWARE_CACHE_ID
"a4t"
SHOPWARE_CDN_STRATEGY_DEFAULT
"id"
SHOPWARE_ES_ENABLED
"1"
SHOPWARE_ES_INDEXING_ENABLED
"1"
SHOPWARE_ES_INDEX_PREFIX
"sw_all4team"
SHOPWARE_ES_THROW_EXCEPTION
"1"
SHOPWARE_HTTP_CACHE_ENABLED
"1"
SHOPWARE_HTTP_DEFAULT_TTL
"7200"
SQL_SET_DEFAULT_SESSION_VARIABLES
"0"

Defined as regular env variables

Key Value
APP_DEBUG
"1"
CONTENT_LENGTH
"106"
CONTENT_TYPE
"application/json"
DOCUMENT_ROOT
"/var/www/vhosts/all4team/html/public"
HTTPS
"on"
HTTP_ACCEPT
"application/vnd.api+json"
HTTP_AUTHORIZATION
"Bearer eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJhdWQiOiJTV0lBQkpMTFVIRFhBRlZWUkVETkJFRERaRyIsImp0aSI6IjA5Yzg0YzM1MDcxMGM4M2FlNWU1YzI5YTc1MGY0ZDA4MDk2NDNjYjkxMDY1MjZhN2U4MjQ3ZjE5MmMxZjUyMDgzZTQ1YWI0YTY5OTUyNjM1IiwiaWF0IjoxNzgyMzYwNDQ2Ljc5MzUyLCJuYmYiOjE3ODIzNjA0NDYuNzkzNTI0LCJleHAiOjE3ODIzNjEwNDYuNzg2NDI2LCJzdWIiOiIiLCJzY29wZXMiOlsid3JpdGUiXX0.Moczm5l6WIO_PiLBGwOZdQYUBgoms5k1ZQ4-gpFPJSPLwqS2CrYLojNazsuNApBuCbaD2Ai8XtSWCsiRQwqCwgSkoSmvwfqKcjT4AUHOTwjCeBDgE_WnQaEYNHtvTHDKl_WNPOk1_cS2JMcYuy2o4guwQdPfwcgdUtfYmEEV6zhB_DcaUdKohyCO7FGCKwnwEV0bjbM4NuQKhi4skTprcyRfbKdcratwgJlFGmEwlX5MMX52iI9qxq7mfFpS_heAGSxs6m3pdHf2GNCNmTdoYk4zkQ4AhBmh9xbK3IApKhC1wlkiEwed_qYG18sXmuV40almIIWqcAAV8ayzdfVDuw"
HTTP_FORWARDED
"for="176.52.247.29";host="www.all4team.de";proto=https"
HTTP_HOST
"www.all4team.de"
HTTP_USER_AGENT
"GuzzleHttp/7"
HTTP_X_FORWARDED_FOR
"176.52.247.29"
LSWS_EDITION
"Openlitespeed 1.8.2"
PATH
"/bin:/usr/bin"
PHP_SELF
"/index.php"
QUERY_STRING
"_response=detail"
REDIRECT_QUERY_STRING
"_response=detail"
REDIRECT_STATUS
"200"
REDIRECT_URL
"/api/product-media/019ef8f57ace704986fc0a0443e0b80c"
REMOTE_ADDR
"127.0.0.1"
REMOTE_PORT
"64680"
REQUEST_METHOD
"PATCH"
REQUEST_TIME
1782360585
REQUEST_TIME_FLOAT
1782360585.5661
REQUEST_URI
"/api/product-media/019ef8f57ace704986fc0a0443e0b80c?_response=detail"
SCRIPT_FILENAME
"/var/www/vhosts/all4team/html/public/index.php"
SCRIPT_NAME
"/index.php"
SERVER_ADDR
"37.221.195.102"
SERVER_ADMIN
""
SERVER_NAME
"www.all4team.de"
SERVER_PORT
"443"
SERVER_PROTOCOL
"HTTP/1.1"
SERVER_SOFTWARE
"LiteSpeed"
SSL_CIPHER
"TLS_AES_256_GCM_SHA384"
SSL_CIPHER_ALGKEYSIZE
"256"
SSL_CIPHER_USEKEYSIZE
"256"
SSL_PROTOCOL
"TLSv1.3"
SYMFONY_DOTENV_PATH
"/var/www/vhosts/all4team/html/.env"
SYMFONY_DOTENV_VARS
"APP_ENV,APP_URL,APP_SECRET,INSTANCE_ID,BLUE_GREEN_DEPLOYMENT,DATABASE_URL,MAILER_URL,OPENSEARCH_URL,SHOPWARE_ES_ENABLED,SHOPWARE_ES_INDEXING_ENABLED,SHOPWARE_ES_INDEX_PREFIX,SHOPWARE_ES_THROW_EXCEPTION,PROXY_URL,SHOPWARE_HTTP_CACHE_ENABLED,SHOPWARE_HTTP_DEFAULT_TTL,LOCK_DSN,APP_URL_CHECK_DISABLED,SHOPWARE_CDN_STRATEGY_DEFAULT,MESSENGER_TRANSPORT_DSN,MAILER_DSN,COMPOSER_HOME,SQL_SET_DEFAULT_SESSION_VARIABLES,SHOPWARE_CACHE_ID"
X-LSCACHE
"on,crawler"