Medium severity5.4NVD Advisory· Published Jan 5, 2021· Updated Jun 17, 2026
CVE-2020-26046
CVE-2020-26046
Description
FUEL CMS 1.4.11 has stored XSS in Blocks/Navigation/Site variables. This could lead to cookie stealing and other malicious actions. This vulnerability can be exploited with an authenticated account and also impact other visitors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- FUEL CMS/FUEL CMSdescription
Patches
Vulnerability mechanics
References
2- github.com/daylightstudio/FUEL-CMS/issues/574nvdExploitThird Party Advisory
- getfuelcms.comnvdProduct
News mentions
0No linked articles in our index yet.