High severity8.3NVD Advisory· Published Apr 15, 2026· Updated Jul 5, 2026
CVE-2026-30461
CVE-2026-30461
Description
Daylight Studio FuelCMS v1.5.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the /controllers/Installer.php and the function add_git_submodule.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:thedaylightstudio:fuel_cms:1.5.2:*:*:*:*:*:*:*
- Range: =1.5.2
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.