EIP-2026-107436

PRE-CVE

GLPI 9.5.3 - 'fromtype' Unsafe Reflection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-107436. PoCs published by Vadym Soroka.

AI-analyzed exploit summary The writeup details an unsafe reflection vulnerability in GLPI <=9.5.3, where the `getItemForItemtype()` function instantiates arbitrary classes without proper input validation, allowing unauthenticated attackers to trigger sensitive operations via constructors or destructors. The analysis includes vulnerable code snippets, a proof-of-concept request, and references to technical advisories.

Description

GLPI 9.5.3 - 'fromtype' Unsafe Reflection

Exploits (1)

exploitdb WRITEUP
by Vadym Soroka · textwebappsphp
https://www.exploit-db.com/exploits/49628

The writeup details an unsafe reflection vulnerability in GLPI <=9.5.3, where the `getItemForItemtype()` function instantiates arbitrary classes without proper input validation, allowing unauthenticated attackers to trigger sensitive operations via constructors or destructors. The analysis includes vulnerable code snippets, a proof-of-concept request, and references to technical advisories.

Classification
Writeup 95%
Attack Type
Other
Complexity
Moderate
Reliability
Reliable
Target: GLPI <=9.5.3
No auth needed
Prerequisites: Access to the target GLPI instance · Knowledge of existing classes in the GLPI environment
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026