is_safe_valid_url of the component URL Validation Handler. Executing a manipulation can lead to server-side request forgery.The identification of this vulnerability is CVE-2026-27696. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.