Server-Side Request Forgery (SSRF) in Ghost - #VU151947
Published: September 24, 2026
Vulnerability details
The vulnerability allows a remote attacker to make limited HTTP requests to hosts on the Ghost server's internal network.
The vulnerability exists due to improper validation in bookmark-fetching functionality, such as Webmentions, when handling attacker-controlled URLs. A remote attacker can submit a crafted URL to make limited HTTP requests to hosts on the Ghost server's internal network.
No response data from the requested hosts is returned.