CVE-2026-70595: Ghost is a Node.js content management system. From 6.26.0 until 6.54.1, a validation issue allowed some functionality, such as Webmentions, to be abused by an unauthenticated user
Ghost is a Node.js content management system. From 6.26.0 until 6.54.1, a validation issue allowed some functionality, such as Webmentions, to be abused by an unauthenticated user to make limited HTTP requests to hosts in the Ghost server's internal network. A successful attack would not result in any response data being returned. This vulnerability is fixed in 6.54.1.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-70595
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-70595 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
Recent advisories for Ghost is a
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- mediumCVE-2026-70596: Ghost is a Node.js content management system. From 4.9.0 until 6.54.1, an input validation iss…nvd · 2026-08-05
- mediumGHSA-jx35-x7fj-vgpr: Ghost Content API filter bypass reveals private fieldsghsa · 2026-08-05
- mediumGHSA-pr22-p9rp-2cqv: Ghost: Cross-Site Scripting in Feature Image Captionsghsa · 2026-08-05
- mediumGHSA-x5mm-wm4g-j5xv: Ghost: Server-Side Request Forgery Mitigation Issueghsa · 2026-08-05
- mediumCVE-2026-70594: Ghost is a Node.js content management system. From 2.2.0 until 6.54.1, Ghost Admin did not inv…nvd · 2026-08-04
- mediumCVE-2026-70593: Ghost is a Node.js content management system. From 0.10.0 until 6.54.1, a vulnerability in cus…nvd · 2026-08-04
More from NVD Recent CVEs
- highCVE-2026-9203: A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0…2026-08-05
- criticalCVE-2026-9195: A cross-site scripting vulnerability in the Query Console of Progress MarkLogic Server before 1…2026-08-05
- criticalCVE-2026-9193: An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic …2026-08-05
- criticalCVE-2026-9192: An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server befo…2026-08-05
- criticalCVE-2026-9190: An HTTP request smuggling vulnerability in the HTTP App Server of Progress MarkLogic Server bef…2026-08-05