Skip to main content

Vendor archive

ghost CVEs

Beta · best-effort

33 CVEs tagged to vendor ghost5 Critical, 11 High, 17 Medium, 0 Low, 0 Unrated.

CVE-2026-29784

Published Mar 7, 2026

Ghost is a Node.js content management system. From version 5.101.6 to 6.19.2, incomplete CSRF protections around /session/verify made it possible to use OTCs in login sessions dif…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-29053

Published Mar 5, 2026

Ghost is a Node.js content management system. From version 0.7.2 to 6.19.0, specifically crafted malicious themes can execute arbitrary code on the server running Ghost. This issu…

CVSS 7.6 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-26980

Published Feb 20, 2026

Ghost is a Node.js content management system. Versions 3.24.0 through 6.19.0 allow unauthenticated attackers to perform arbitrary reads from the database. This issue has been fixe…

CVSS 9.4 · Critical
evidence mentions
9
Buzz score
43.0
Vendor/product tagsBeta · best-effort

CVE-2026-24778

Published Jan 27, 2026

Ghost is an open source content management system. In Ghost versions 5.43.0 through 5.12.04 and 6.0.0 through 6.14.0, an attacker was able to craft a malicious link that, when acc…

CVSS 8.8 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-22597

Published Jan 10, 2026

Ghost is a Node.js content management system. In versions 5.38.0 through 5.130.5 and 6.0.0 through 6.10.3, a vulnerability in Ghost’s media inliner mechanism allows staff users in…

CVSS 5.1 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-22596

Published Jan 10, 2026

Ghost is a Node.js content management system. In versions 5.90.0 through 5.130.5 and 6.0.0 through 6.10.3, a vulnerability in Ghost's /ghost/api/admin/members/events endpoint allo…

CVSS 6.7 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-22595

Published Jan 10, 2026

Ghost is a Node.js content management system. In versions 5.121.0 through 5.130.5 and 6.0.0 through 6.10.3, a vulnerability in Ghost's handling of Staff Token authentication allow…

CVSS 8.1 · High
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-22594

Published Jan 10, 2026

Ghost is a Node.js content management system. In versions 5.105.0 through 5.130.5 and 6.0.0 through 6.10.3, a vulnerability in Ghost's 2FA mechanism allows staff users to skip ema…

CVSS 8.1 · High
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2025-9862

Published Sep 17, 2025

Server-Side Request Forgery (SSRF) vulnerability in Ghost allows an attacker to access internal resources.This issue affects Ghost: from 6.0.0 through 6.0.8, from 5.99.0 through 5…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-43409

Published Aug 20, 2024

Ghost is a Node.js content management system. Improper authentication on some endpoints used for member actions would allow an attacker to perform member-only actions, and read me…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-34451

Published Jun 16, 2024

Ghost through 5.85.1 allows remote attackers to bypass an authentication rate-limit protection mechanism by using many X-Forwarded-For headers with different values. NOTE: the ven…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-34448

Published May 22, 2024

Ghost before 5.82.0 allows CSV Injection during a member CSV export.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-23724

Published Feb 11, 2024

Ghost through 5.76.0 allows stored XSS, and resultant privilege escalation in which a contributor can take over any account, via an SVG profile picture that contains JavaScript co…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-23725

Published Jan 21, 2024

Ghost before 5.76.0 allows XSS via a post excerpt in excerpt.js. An XSS payload can be rendered in post summaries.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-40028

Published Aug 15, 2023

Ghost is an open source content management system. Versions prior to 5.59.1 are subject to a vulnerability which allows authenticated users to upload files that are symlinks. This…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-31133

Published May 8, 2023

Ghost is an app for new-media creators with tools to build a website, publish content, send newsletters, and offer paid subscriptions to members. Prior to version 5.46.1, due to a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-32235

Published May 5, 2023

Ghost before 5.42.1 allows remote attackers to read arbitrary files within the active theme's folder via /assets/built%2F..%2F..%2F/ directory traversal. This occurs in frontend/w…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-24736

Published Apr 11, 2023

Buffer Overflow vulnerability found in SQLite3 v.3.27.1 and before allows a local attacker to cause a denial of service via a crafted script.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-43441

Published Mar 16, 2023

A code execution vulnerability exists in the Statement Bindings functionality of Ghost Foundation node-sqlite3 5.1.1. A specially-crafted Javascript file can lead to arbitrary cod…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-26510

Published Mar 5, 2023

Ghost 5.35.0 allows authorization bypass: contributors can view draft posts of other users, which is arguably inconsistent with a security policy in which a contributor's draft ca…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-47197

Published Jan 19, 2023

An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-47196

Published Jan 19, 2023

An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-47195

Published Jan 19, 2023

An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-47194

Published Jan 19, 2023

An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-41697

Published Dec 22, 2022

A user enumeration vulnerability exists in the login functionality of Ghost Foundation Ghost 5.9.4. A specially-crafted HTTP request can lead to a disclosure of sensitive informat…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-25 of 33 CVEsPage 1 of 2