Security Advisory

CVE-2026-30459

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-16 00:00:00
Last updated 2026-04-16 15:16:57
Assigner mitre
State PUBLISHED

Description

An issue in the Forgot Password feature of Daylight Studio FuelCMS v1.5.2 allows unauthenticated attackers to obtain the password reset token of a victim user via a crafted link placed in a valid e-mail message.