Incident700 Ghost CMS Sites Hijacked Through SQL Injection
Over 700 websites using Ghost CMS were compromised in February and March 2026 due to CVE-2026-26980, a critical SQL injection vulnerability in the platform s Content API. Attackers exploited this flaw














