SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-81159

LOW · CVSS 3.7 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Drupal Commerce CyberSource versions 0.0.0 to 1.10.0 are vulnerable to an observable timing discrepancy that can be exploited for brute force attacks. This vulnerability may allow attackers to gain unauthorized access by systematically guessing credentials. Organizations using affected versions should prioritize remediation to protect against potential unauthorized access.

CVE
CVE-2026-81159
Severity
LOW
CVSS
3.7
EPSS
0.26%

Original NVD Description

Observable Timing Discrepancy vulnerability in Drupal Commerce CyberSource allows Brute Force. This issue affects Commerce CyberSource versions: from 0.0.0 to 1.10.0.