
[CVE-2026-30643: CRITICAL] An issue was discovered in DedeCMS 5.7.118 allowing attackers to execute code via crafted setup tag values in a module upload.#cve,CVE-2026-30643,#cybersecurity https://cvefind.com/CVE-2026-30643
Post summary
The post announces a critical remote‑code‑execution flaw in DedeCMS 5.7.118, highlighting how attackers can exploit crafted setup tag values during module uploads, without providing a PoC, patch, or active exploitation evidence.

