Unrated severityNVD Advisory· Published Oct 5, 2026
CVE-2026-95263
CVE-2026-95263
Description
Feehi CMS 2.1.1 is vulnerable to Incorrect Access Control. A low-privilege backend administrator with administrator-update permission can change the password of the built-in super administrator account. The server does not enforce protection for this account, and the update scenario does not require the old password.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.