CVE-2026-31867
Published Mar 11, 2026Craft Commerce is an ecommerce platform for Craft CMS. Prior to 4.11.0 and 5.6.0, An Insecure Direct Object Reference (IDOR) vulnerability exists in Craft Commerce’s cart function…
- evidence mentions
- 2
- Buzz score
- 16.0