Security Advisory

CVE-2026-30993

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-15 00:00:00
Last updated 2026-04-16 14:06:34
Assigner mitre
State PUBLISHED

Description

Slah CMS v1.5.0 and below was discovered to contain a remote code execution (RCE) vulnerability in the session() function at config.php. This vulnerability is exploitable via a crafted input.