CRITICAL
9.1 CVE-2026-73475 Published 2 Sept 2026
Drupal Commerce PayPal Forceful Browsing Bug
Worried this affects one of your servers?
Incorrect Authorization vulnerability in Drupal Commerce PayPal allows Forceful Browsing.
This issue affects Drupal Commerce PayPal versions:
- from 0.0.0 to 1.12.0
- from 2.0.0 to 2.1.3
Reference: CVE-2026-73475 on NVD
← Back to Security News