Loading
Generated remediation guidance and an executive summary. No account required.
FUEL CMS 1.4.4 has CSRF in the blocks/create/ Create Blocks section of the Admin console. This could lead to an attacker tricking the administrator into executing arbitrary code via a specially crafted HTML page.
Use CWE-352, Thedaylightstudio vendor hub and Fuel Cms product page to widen CVE-2019-15229 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-30457, CVE-2020-22153 and CVE-2020-22151 for nearby disclosures in the same product family.