Vulnerabilities > Payment FOR Webform Project > Payment FOR Webform > 7.x.1.4

DATE CVE VULNERABILITY TITLE RISK
2014-10-25 CVE-2013-4594 Improper Authentication vulnerability in Payment FOR Webform Project Payment FOR Webform
The Payment for Webform module 7.x-1.x before 7.x-1.5 for Drupal does not restrict access by anonymous users, which allows remote anonymous users to use the payment of other anonymous users when submitting a form that requires payment.
4.3