{"repo":"SecureWithUmer/CVE-2026-PoCs","free":true,"listed":false,"github":"https://github.com/SecureWithUmer/CVE-2026-PoCs","clone":"git clone https://github.com/SecureWithUmer/CVE-2026-PoCs.git","description":"A community-curated, verified collection of Proof-of-Concept exploits for CVEs disclosed in 2026.","language":"C++","stars":35,"topics":["2026-active","all","cve","cvss","database","exploit","exploit-db","latest","list","poc"],"license":"MIT","category":"databases-storage","readme_excerpt":"# CVE-2026-PoCs A community-curated, verified collection of Proof-of-Concept exploits for CVEs disclosed in 2026. Why this repo Most CVE PoC collections are scattered across Twitter threads, gists, and dead blog links. This repo aims to be the single, well-organized, actively maintained index of 2026 CVE PoCs — with consistent metadata, verified references, and clear contribution standards. Index &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; CVE ID &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; CVE Description Affected Product Added Date POC Status :---: :--- :--- :---: :---: CVE-2026-9082 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Drupal Drupal core allows SQL Injection. This issue affects Drupal core: from 8.9.0 before 10.4.10, from 10.5.0 before 10.5.10, from 10.6.0 before 10.6.9, from 11.0.0 before 11.1.10, from 11.2.0 before 11.2.12, from 11.3.0 before 11.3.10. — 2026-07-08 Available CVE-2026-8206 The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions 6.0.0 to 6.0.6. This is due to the plugin accepting an arbitrary email address when a username is used in the password reset request. This makes it possible for unauthenticated attackers to send a password reset link for any user registered on the site to their own email address. Kirki Plugin 2026-07-08 Available CVE-2026-5118 The Divi Form Builder plugin for WordPress is vulnerabl","default_branch":null,"files":null,"tree":[],"storefront":"/r/SecureWithUmer","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/SecureWithUmer/CVE-2026-PoCs/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}