Server-Side Request Forgery (SSRF) in Ghost - CVE-2026-70591
Published: July 30, 2026
Vulnerability details
The vulnerability allows a remote user to perform blind HTTP requests against internal hosts.
The vulnerability exists due to server-side request forgery in the image fetching functionality when processing image fetch requests. A remote privileged user can supply a crafted image URL to perform blind HTTP requests against internal hosts.
This issue could be used to probe open ports on internal hosts.