CVE-2026-30463: SQL Injection
Published Mar 26, 2026
·Updated
Daylight Studio FuelCMS v1.5.2 was discovered to contain a SQL injection vulnerability via the /controllers/Login.php component.
Affected Software
2 affected components
Daylight Studio FuelCMS=1.5.2
TheDayLightStudio Fuel CMS=1.5.2
Event History
Mar 26, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-30463?
CVE-2026-30463 has a high severity rating of 7.7 according to the CVSS 3.1 metrics.
2
How do I fix CVE-2026-30463?
To fix CVE-2026-30463, you should update to the latest version of Daylight Studio FuelCMS that addresses the SQL injection vulnerability.
3
What type of vulnerability is identified in CVE-2026-30463?
CVE-2026-30463 identifies an SQL injection vulnerability found within the /controllers/Login.php component.
4
What impact does CVE-2026-30463 have on the system?
CVE-2026-30463 can potentially allow unauthorized access to sensitive data through SQL injection.
5
When was CVE-2026-30463 published?
CVE-2026-30463 was published on March 26, 2026.