CVE-2026-105645: medium-severity vulnerability in TryGhost Ghost
Ghost: Regular Expression Denial of Service in External Media Inliner
Published
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 4.9epss 0.3%
exploitation probability
0.3%top 76% of all CVEs
observed exploitation
nono source reports it
Ghost is a Node.js content management system. From 5.37.0 until 6.67.0, a crafted request to the external media inliner could cause excessive CPU usage, making the Ghost server unresponsive. Exploiting this requires Administrator access. This issue is fixed in version 6.67.0.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Affected products
TryGhost · GhostRelated CVEs — TryGhost Ghost
In the same product, most dangerous first.
CVE-2023-40028MEDIUMArbitrary file read via symlinks in GhostEPSS 69.0%CVE-2023-31133HIGHGhost vulnerable to disclosure of private API fieldsEPSS 45.7%CVE-2021-29484MEDIUMDOM XSS in Theme PreviewEPSS 7.9%CVE-2026-29053HIGHGhost Vulnerable to Remote Code Execution via Malicious ThemesEPSS 5.0%CVE-2026-26980CRITICALGhost has a SQL Injection in its Content APIEPSS 5.0%CVE-2026-22594HIGHGhost has Staff 2FA bypassEPSS 1.3%