Vulnerabilities

Ghost CMS Vulnerability Exploited to Hack Over 700 Websites

Sites belonging to major universities such as Harvard and Oxford, as well as DuckDuckGo, have been compromised in the attack.

Hacking

A vulnerability patched a few months ago in the Ghost content management system (CMS) has been exploited to hack hundreds of websites, including ones belonging to major organizations, according to Chinese cybersecurity company Qianxin.

The exploited vulnerability is tracked as CVE-2026-26980 and its existence came to light in February when it was patched.

Ghost is a widely used open source CMS designed specifically for blogging, newsletters, and publishing, offering built-in tools for memberships, subscriptions, and audience monetization. According to its developer, Ghost is actively used by over 100,000 websites. 

When CVE-2026-26980 was disclosed, SentinelOne warned that the vulnerability, an SQL injection flaw, can be exploited by unauthenticated attackers to extract sensitive data from the Ghost database. The security firm noted that an attacker could obtain authentication tokens, user credentials, and website content. 

Qianxin reported last week that CVE-2026-26980 has been exploited in mass attacks against unpatched Ghost instances. 

Threat actors leveraged the flaw to obtain the targeted sites’ Admin API Key and then used the API to alter articles posted on Ghost-powered sites. Specifically, the attackers injected malicious JavaScript loaders designed for ClickFix attacks. 

Advertisement. Scroll to continue reading.

The compilation timestamp of a DLL file used in the attack is February 16, the day a patch was announced for CVE-2026-26980. Qianxin started seeing compromised websites in early May.

The security firm has identified more than 700 websites compromised in the campaign, including ones belonging to major organizations such as DuckDuckGo, Harvard University, and Oxford University.

An analysis showed that nearly half of the hacked websites are personal blogs and independent sites, but dozens belong to software development and tech blogs, AI, cryptocurrency, and various other types of entities. 

Qianxin has alerted many of the victims, but said a vast majority did not respond to its notifications. 

“At least two groups are currently actively conducting such poisoning operations, and some sites have even become the target of competition between the two parties, with different malicious code being implanted one after another within a single day,” Qianxin said.

Related: Drupal Vulnerability in Hacker Crosshairs Shortly After Disclosure

Related: Exploitation of Critical NGINX Vulnerability Begins

Related: Hackers Targeted PraisonAI Vulnerability Hours After Disclosure

Related Content

Artificial Intelligence

AgentForger allows an attacker to create, insert and remotely control an invisible autonomous AI agent inside a victim organization.

Vulnerabilities

The vulnerability tracked as CVE-2026-16232 has been exploited against customers with certain configurations.

Vulnerabilities

An attacker only needed to convince the targeted user to visit a malicious website to exfiltrate WhatsApp messages and contacts.

Vulnerabilities

CVE-2026-50522 is being exploited by threat actors to steal machine keys and retain long-term access.

Vulnerabilities

Many of the vulnerabilities fixed with the July 2026 Critical Patch Update were likely discovered by AI.

Artificial Intelligence

The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models.

Vulnerabilities

A security researcher discovered a broken access control vulnerability in Meta’s support infrastructure.

Vulnerabilities

The ServiceNow AI platform vulnerability tracked as CVE-2026-6875 can be exploited for remote code execution.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version