CVE
CVE-2026-26980
- First Reported
- Jul 20, 2026
- Latest Reported
- Jul 20, 2026
Reported Context (1)
- heap overflow in the rewrite module, and a blind SQL injection in the Ghost Content API (CVE-2026-26980). Exploit code for both became public quickly. What we found was a single host staging them alongside Exposed Server Staged NGINX and Ghost CMS Exploits for Targets in 11 Countries
CVE (6)
MITRE ATT&CK (2)
Vendors (1)
Products (7)
Tools (5)
Industries (4)
Countries (12)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.