Loading...
Loading...
Cross-site request forgery (CSRF) vulnerability in the Commerce Extra Panes module 7.x-1.x before 7.x-1.1 in Drupal allows remote attackers to hijack the authentication of administrators for requests that enable or disable a Commerce extra panes pane via unspecified vectors related to "the link to reorder items."
December 3, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-5542
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.