EIP-2026-104015
PRE-CVEOpenWFE 1.4.x - Cross-Site Scripting / Connection Proxy
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104015. PoCs published by Joxean Koret.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) and connection proxy vulnerability in OpenWFE. The XSS payload is embedded in an RMI URL, while the proxy issue allows scanning arbitrary network hosts via RMI connections.
Description
OpenWFE 1.4.x - Cross-Site Scripting / Connection Proxy
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Joxean Koret · textremotemultiple
https://www.exploit-db.com/exploits/24701
The exploit demonstrates a cross-site scripting (XSS) and connection proxy vulnerability in OpenWFE. The XSS payload is embedded in an RMI URL, while the proxy issue allows scanning arbitrary network hosts via RMI connections.
Classification
Working Poc 90%
Attack Type
Xss | Ssrf
Complexity
Trivial
Reliability
Reliable
Target:
OpenWFE (version not specified)
No auth needed
Prerequisites:
Access to a vulnerable OpenWFE instance · Ability to craft malicious RMI URLs
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026