{"id":"CVE-2026-104418","title":"Ghost from 6.10.3 before 6.64.0 contains a remote code execution vulnerability that allows authenticated administrators to run code by abusing theme translation file loading","summary":"Ghost from 6.10.3 before 6.64.0 contains a remote code execution vulnerability that allows authenticated administrators to run code by abusing theme translation file loading. Attackers with administrator access can upload a crafted theme…","severity":"high","cvss":7.2,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-22"],"vendor":"TryGhost","product":"Ghost","affected":["Ghost >= 6.10.3 < 6.64.0"],"published":"2026-10-02","updated":"2026-10-02","sourceUpdated":"2026-10-02T12:17:11.710","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-104418","references":[{"url":"https://github.com/TryGhost/Ghost/security/advisories/GHSA-jj74-hc2q-xrvm","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/ghost-from-6.10.3-before-6.64.0-rce-via-theme-translation-files","label":"disclosure@vulncheck.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-10-02T12:17:44.328Z","slug":"CVE-2026-104418","body":"## Overview\n\nGhost from 6.10.3 before 6.64.0 contains a remote code execution vulnerability that allows authenticated administrators to run code by abusing theme translation file loading. Attackers with administrator access can upload a crafted theme containing malicious translation files to execute arbitrary code on the Ghost server.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":40,"depthScoreParts":{"impact":39.6,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}