Known vulnerabilities in Ghost Ghost

Vendor: Ghost
Website: https://ghost.org/
Total Security Bulletins: 12

Security bulletins (12)

Secuity bulletin Severity Status Published
SB2026010908: Multiple vulnerabilities in Ghost Medium
Patched
09.01.2026
SB2025091768: Server-Side Request Forgery (SSRF) in Ghost Medium
Patched
17.09.2025
SB2024011831: Cross-site scripting in Ghost Low
Patched
18.01.2024
SB2023050404: Information disclosure in Ghost Medium
Patched
04.05.2023
SB2022112859: Improper access control in Ghost Low
Patched Public exploit
28.11.2022
SB2021092710: Improper access control in Ghost Medium
Patched
27.09.2021
SB2021092004: Command Injection in Ghost High
Patched
20.09.2021
SB2021050410: Cross-site scripting in Ghost Low
Patched
04.05.2021
SB2021041903: Information disclosure in Ghost Low
Patched
19.04.2021
SB2020041521: Cross-site request forgery in Ghost publishing platform Low
Patched
15.04.2020
SB2020032020: Server-Side Request Forgery (SSRF) in Ghost High
Patched
20.03.2020
SB2019091727: Improper Authentication in Ghost Ghost Medium
Patched
17.09.2019