Server-Side Request Forgery (SSRF) in Ghost - #VU151947

 

Server-Side Request Forgery (SSRF) in Ghost - #VU151947

Published: September 24, 2026


Vulnerability identifier: #VU151947
CSH Severity: Low
CVSS v4: 6.3 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-918
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to make limited HTTP requests to hosts on the Ghost server's internal network.

The vulnerability exists due to improper validation in bookmark-fetching functionality, such as Webmentions, when handling attacker-controlled URLs. A remote attacker can submit a crafted URL to make limited HTTP requests to hosts on the Ghost server's internal network.

No response data from the requested hosts is returned.


Affected software

Ghost

Remediation

Install security update from vendor's website.

Ghost - update to 6.65.0

External References

Related Security Bulletins