Security Advisory

CVE-2026-73475

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-09-02 12:32:41
Last updated 2026-09-02 12:32:41
Assigner drupal
CVSS score not scored
State PUBLISHED

Description

Incorrect Authorization vulnerability in Drupal Commerce PayPal allows Forceful Browsing. This issue affects Commerce PayPal versions: from 0.0.0 to 1.12.0, from 2.0.0 to 2.1.3.