A vulnerability was found in OpenZeppelin Confidential Contracts up to 0.3.0. It has been declared as problematic. This affects the function
wrap/onTransferReceived of the file contracts/token/ERC7984/extensions/ERC7984ERC20Wrapper.sol of the component ERC7984ERC20Wrapper. Such manipulation leads to integer overflow.
This vulnerability is listed as CVE-2026-73645. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.