
CVE-2026-71245 Mautic's getLeadIdsByFieldValueAction (LeadBundle/Controller/AjaxController.php) reads a field parameter from the request, sanitizes it only with InputHelper::clean()… https://www.cve.org/CVERecord?id=CVE-2026-71245
Post summary
The entry describes a sanitization flaw in Mautic's getLeadIdsByFieldValueAction but does not provide evidence of exploitation, PoC, or patch, simply noting the vulnerability details.



