Vulnerabilities (CVE)

Filtered by vendor Centarro Subscribe
Filtered by product Commerce Paypal
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-73475 1 Centarro 1 Commerce Paypal 2026-09-08 N/A 9.1 CRITICAL
Incorrect Authorization vulnerability in Drupal Commerce PayPal allows Forceful Browsing. This issue affects Commerce PayPal versions: from 0.0.0 to 1.12.0, from 2.0.0 to 2.1.3.