cve-2026-87902
cve-2026-87902 is CVE-2026-87902 - WordPress - WordPress Core - Critical 9.2 - Unauthenticated Local File Inclusion (conditional RCE) - abraxas/CVE-2026-87902. It is ranked #360 on the Dev Radar, in Security, first seen 2 h ago and shared in 1 post (6.4k views).
GitHub - abraxas/CVE-2026-87902: CVE-2026-87902 - WordPress - WordPress Core - Critical 9.2 - Unauthenticated Local File Inclusion (conditional RCE) · GitHub Skip to content Navigation Menu Sign in Appearance settings Search / Sign in Sign up Appearance settings You signed in with another tab or window. Reload to refresh your session. You signed out in another tab or window. Reload to refresh your session. You switched accounts on another tab or window. Reload to refresh your session. Dismiss alert {{ message }} abraxas / CVE-2026-87902 Public Notifications You must be signed in to change notification settings Fork 4 Star 20 main Branches…
What people said about cve-2026-87902 on X
🚨[POC] CVE-2026-87902: WordPress Core versions up to and including 7.1.1 are affected by a Local File Inclusion vulnerability in the locate_template() function. GitHub: https://github.com/abraxas/CVE-2026-87902
— @DarkWebInformer, 2 h ago · 41 likes · see the post
Alternatives to cve-2026-87902
- security-audit-skill — A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings -…
- Cloudflare Blog — Use production traffic and security signals to prioritize findings, prepare edge mitigations when safe, and propose…
- not-a-mused — First, one of 0day PoCs
- CSA — Traditional threat modeling assumes you can map the attack surface ahead of time. An autonomous agent doesn't work…
- entratrace — EntraTrace is a defensive security research tool for tracking and identifying the behavior of offensive tooling…
- Google — Gemini 3.8 Flash and 3.8 Flash Cyber deliver next-generation intelligence for agentic workflows and cybersecurity.
cve-2026-87902 in numbers
- Rank on the Dev Radar: #360 of 2651
- Shared in 1 post by 1 account: @DarkWebInformer
- 6.4k views on those posts
- First seen 2 h ago, last shared 2 h ago
- Pricing seen by Jev: open source
- Market: Security
FAQ
What is cve-2026-87902?
CVE-2026-87902 - WordPress - WordPress Core - Critical 9.2 - Unauthenticated Local File Inclusion (conditional RCE) - abraxas/CVE-2026-87902 It was first shared on X 2 h ago and is ranked #360 on the Dev Radar.
Is cve-2026-87902 free?
It is open source.
Who shared cve-2026-87902?
1 account on X, including @DarkWebInformer, in 1 post totalling 6.4k views.
Every post is read and classified by Jev (TypeSafe): what it is, which market it belongs to, and whether the link is a real tool. 22.9k posts from 5k X accounts over the last 21 days, 2.7k tools, 12 markets. Collected every 5 minutes, fully re-ranked every hour — last update 2026-09-23 20:50 UTC. Full method.