Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

cve-2026-87902-poc

PoC for CVE-2026-87902 — unauthenticated path traversal in WordPress page-template resolution (local PHP inclusion, conditional RCE) with a pinned vulnerable lab

Details

External ID
1382159140
Source
GITHUB
Company
—
Product
cve-2026-87902-poc
Website domain
ressl.ch
Launched
Sept. 22, 2026
Cohort
—
Upvotes
31
Upvotes percentile
0.7332820906994619
Tags
cve, cve-2026-87902, lfi, proof-of-concept, rce, security, vulnerability, wordpress
Fetched at
Sept. 26, 2026, 10:54 p.m.
Updated at
Sept. 26, 2026, 10:54 p.m.

Enrichment

Theme
security exploits and system hacking tools
Vertical
Security
Function
Dev tools
Audience
Developer
AI stance
Not AI
Project type
Hobby / open-source project
Normalized one-liner
proof of concept exploit for wordpress path traversal vulnerability
Manually corrected
False

Could you build this?

No Discovering an unauthenticated path traversal leading to RCE in WordPress Core and developing a functional exploit requires high-level security research and vulnerability discovery skills.

What it would actually take: Developing a novel core CVE exploit requires deep manual code auditing of PHP runtime internals, WordPress request handling, and template loader routines. The hard part is identifying subtle sanitization bypasses (such as double encoding issues) and chaining them with server environment artifacts (like PEAR includes) to achieve reliable arbitrary code execution. This requires professional offensive security research expertise.

Competitors

Other products that read as similar to this one — 83 launches clear the similarity bar, closest 8 shown.

Attention rank: #20 of 84 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 263 days after the earliest competitor.

Other launches for this product

Same idea, different domain

Nobody's really built a dev tools tool for Sales yet.