EIP-2026-112486

PRE-CVE

Superfood 1.0 - Multiple Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-112486. PoCs published by L0RD.

AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Superfood - Restaurants & Online Food Order System 1.0, including persistent XSS, CSRF, and admin panel authentication bypass. It provides functional PoC code for each vulnerability, including HTML forms and payloads.

Description

Superfood 1.0 - Multiple Vulnerabilities

Exploits (1)

exploitdb WORKING POC
by L0RD · textwebappsphp
https://www.exploit-db.com/exploits/44661

The exploit demonstrates multiple vulnerabilities in Superfood - Restaurants & Online Food Order System 1.0, including persistent XSS, CSRF, and admin panel authentication bypass. It provides functional PoC code for each vulnerability, including HTML forms and payloads.

Classification
Working Poc 95%
Attack Type
Xss | Auth Bypass | Other
Complexity
Trivial
Reliability
Reliable
Target: Superfood - Restaurants & Online Food Order System 1.0
No auth needed
Prerequisites: Access to the target application · User account for XSS/CSRF PoC
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026