CVE
CVE-2026-64638
- First Reported
- Sep 18, 2026
- Latest Reported
- Sep 18, 2026
Reported Context (1)
- The interface groups targets under five named exploitation chains: react2shell (CVE-2025-55182), wp2shell (CVE-2026-63030 and CVE-2026-60137), xss2shell (CVE-2026-64638), joomla2shell (CVE-2026-48907), and deep. Datadog Tracks AI-Assisted Credential-Harvesting Platforms and AWS Abuse
CVE (4)
MITRE ATT&CK (7)
Vendors (6)
Products (4)
Tools (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.