CVE-2024-13257: Commerce View Receipt Project Commerce View Receipt

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Incorrect Authorization vulnerability in Drupal Commerce View Receipt allows Forceful Browsing.This issue affects Commerce View Receipt: from 0.0.0 before 1.0.3.

Affected products

Published 2025-01-09. Last modified 2026-06-17.