High severity8.8NVD Advisory· Published Feb 3, 2023· Updated Jun 17, 2026
CVE-2021-36570
CVE-2021-36570
Description
Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to /permissions/delete/2---.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:thedaylightstudio:fuel_cms:1.4.13:*:*:*:*:*:*:*
- FUEL-CMS/FUEL-CMSdescription
Patches
Vulnerability mechanics
References
1- github.com/daylightstudio/FUEL-CMS/issues/579nvdExploitIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.