CVE-2026-51078

NONE
Updated Jul 28, 2026
PHP
Parameter Value
Vendor PHP
Public PoC No

An issue in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive information via the str parameter of the file_manage_control.php component

Vulnerable Products

n/a:n/a