RequestTokenV2/AccessTokenV2 of the component OAuth 2.0 State Handler. Performing a manipulation of the argument state results in cross-site request forgery.This vulnerability was named CVE-2026-12740. The attack may be initiated remotely. There is no available exploit.
SOCIAL SHARE CARD GENERATOR