CVE-2026-3214 | CAPTCHA up to 1.16.x/2.0.9 on Drupal authentication bypass (sa-contrib-2026-015)
A vulnerability categorized as critical has been discovered in CAPTCHA up to 1.16.x/2.0.9 on Drupal. This vulnerability affects unknown code. Executing a manipulation can lead to authentication bypass using alternate channel.
This vulnerability appears as CVE-2026-3214. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.