CVE-2026-3530 | OpenID Connect OAuth client up to 1.4.x on Drupal server-side request forgery (sa-contrib-2026-025)
A vulnerability marked as critical has been reported in OpenID Connect OAuth client up to 1.4.x on Drupal. This vulnerability affects unknown code. Performing a manipulation results in server-side request forgery.
This vulnerability was named CVE-2026-3530. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.