HIGH
Apioo
CVE published 2026-08-11
CVE-2026-72551
A remote code execution vulnerability in Apioo Fusio 8.8.3 allows authenticated users with the Developer role to execute arbitrary OS commands by exploiting a PHP-Sandbox allow-list bypass. This vulnerability enables a developer to escape the sandbox and gain OS command execution on the server, potentially leading to full server compromise. The CVE record was published on 2026-08-11T12:17:40.733Z and has [truncated]