CVE-2026-22597

low
Published 2026-01-10 · Modified 2026-02-03
CVSS v3
2.7
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
CVSS v2
VIR risk
2.7

Description

Ghost has SSRF via External Media Inliner

Predictions

Exploit likelihood
39%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: security-advisories@github.com — https://github.com/TryGhost/Ghost/security/advisories/GHSA-vmc4-9828-r48r

vendor Authored 2026-05-27

Vendor advisory: security-advisories@github.com — https://github.com/TryGhost/Ghost/commit/93add549ccf079d8e28bdb724fbb71a76942ff51

vendor Authored 2026-05-27

Vendor advisory: security-advisories@github.com — https://github.com/TryGhost/Ghost/commit/15d49131ff4aac3aca8642501c793f01f2bfcbb9

Package impact

EcosystemPackageVulnerableFixed
npm npmghost>=6.0.0,<6.11.06.11.0
npm npmghost>=5.105.0,<5.130.65.130.6

Application impact

VendorProductVersionsFixed
ghostghost{"startIncluding":"5.38.0","endExcluding":"5.130.6"}5.130.6

References

CWEs

CWE-918

Verify integrity in audit chain (admin only). AS-IS.