EIP-2026-112368

PRE-CVE

SPAW Editor 2.0.8.1 - Local File Inclusion

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-112368. PoCs published by soorakh kos.

AI-analyzed exploit summary The provided code is a minimal stub indicating a local file inclusion (LFI) vulnerability in SPAW Editor v.2. It lacks functional exploit code, only referencing vulnerable parameters without payloads or execution details.

Description

SPAW Editor 2.0.8.1 - Local File Inclusion

Exploits (1)

exploitdb STUB VERIFIED
by soorakh kos · textwebappsphp
https://www.exploit-db.com/exploits/15209

The provided code is a minimal stub indicating a local file inclusion (LFI) vulnerability in SPAW Editor v.2. It lacks functional exploit code, only referencing vulnerable parameters without payloads or execution details.

Classification
Stub 30%
Attack Type
Other
Complexity
Trivial
Reliability
Theoretical
Target: SPAW Editor v.2
No auth needed
Prerequisites: access to the vulnerable dialog.php endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026