internalAdapter.deleteSessions of the component Multi-Session Plugin. Performing a manipulation of the argument _multi-* results in improper input validation.This vulnerability is reported as CVE-2025-71402. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.
SOCIAL SHARE CARD GENERATOR