Input validation error in Webform - CVE-2026-96365
Published: September 25, 2026 / Updated: September 25, 2026
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to the affected module does not sufficiently validate an optional token query value before using it. A remote attacker can pass specially crafted input to the application and perform a denial of service (DoS) attack.