Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix… | HappeningNow.news
Published Date: June 09, 2026
Breaking

Cybersecurity

Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks

A critical security flaw in Ghost CMS has been exploited by threat actors to hijack over 700 websites for malicious purposes.

Source The Hacker News Updated May 25, 2026 AI Summary

AI Summary

A critical security flaw in Ghost CMS has been exploited by threat actors to hijack over 700 websites for malicious purposes. The vulnerability, identified as CVE-2026-26980, is an SQL injection issue in the Content API that allows unauthenticated attackers to read arbitrary data from the database. This exploitation has led to ClickFix attacks, which involve injecting malicious JavaScript code to compromise the affected sites. The severity of the issue is underscored by its CVSS score of 9.4, indicating a high risk of exploitation. The Ghost CMS community and users are advised to take immediate action to secure their sites, as the threat actors are actively exploiting this vulnerability.

Read full article on The Hackernews

AI summaries can be wrong sometimes—always verify important details using the source article.

SUPPORT HAPPENINGNOW · Independent AI News Intelligence
SUPPORTER MESSAGE

Enjoyed this article? Consider supporting HappeningNow to help keep independent AI-powered news analysis moving forward. Your contribution helps cover infrastructure, AI summaries, and continued platform development.

Support HappeningNow