Path traversal in Ghost - #VU151107

 

Path traversal in Ghost - #VU151107

Published: September 18, 2026


Vulnerability identifier: #VU151107
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-22
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to disclose sensitive information.

The vulnerability exists due to improper limitation of a pathname to a restricted directory in Ghost theme translation file loading when processing a locale setting. A remote privileged user can specify a path traversal sequence in the locale setting to read JSON files outside the active theme directory and disclose sensitive information.


Affected software

Ghost

Remediation

Install security update from vendor's website.

Ghost - update to 6.64.0

External References

Related Security Bulletins