Does it still work? I’m assuming they must’ve fixed it.
This vuln was discovered in 2021 and Paypal is aware of the risky,maybe they will fix now because of the attention that is receiving.
They say It's not a real vulnerability, but a fraud where you manipulate the victim to transfer money using clickjacking. For me, It's a exploit if anyone can change the token.