Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-9726

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal AlternativeCommerce (Basket) allows Object Injection. This issue affects Drupal AlternativeCommerce (Basket) versions: from 0.0.0 to 2.1.17.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 24.3%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2026-9726


Contact Us

Shodan ® - All rights reserved