PT-2026-35455 · Daylight Studio · Fuel Cms

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-30462

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Daylight Studio FuelCMS version 1.5.2
Description A path traversal issue in the Blocks module allows attackers to perform directory traversal, which involves accessing files and directories that are stored outside the intended folder.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-30462

Affected Products

Fuel Cms