---
id: CVE-2026-105683
title: Ghost is a Node.js content management system
summary: >-
  Ghost is a Node.js content management system. From 6.14.0 until 6.27.0, an
  input validation issue may have allowed staff users to access local files
  outside the intended data storage directories on the server. This issue is
  fixed in vers…
severity: low
cvss: 3.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:L'
cwe:
  - CWE-35
vendor: TryGhost
product: Ghost
affected:
  - 'Ghost >= 6.14.0, < 6.27.0'
published: '2026-10-05'
updated: '2026-10-05'
sourceUpdated: '2026-10-05T20:17:17.123'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-105683'
references:
  - url: >-
      https://github.com/TryGhost/Ghost/commit/770d438fd9d352bbfccbe81dd890580a1d3fd6f0
    label: security-advisories@github.com
  - url: 'https://github.com/TryGhost/Ghost/pull/27217'
    label: security-advisories@github.com
  - url: 'https://github.com/TryGhost/Ghost/releases/tag/v6.27.0'
    label: security-advisories@github.com
  - url: 'https://github.com/TryGhost/Ghost/security/advisories/GHSA-83rp-q473-j88c'
    label: security-advisories@github.com
tags:
  - nvd
  - cve.org
ingestedAt: '2026-10-05T20:32:56.649Z'
---

## Overview

Ghost is a Node.js content management system. From 6.14.0 until 6.27.0, an input validation issue may have allowed staff users to access local files outside the intended data storage directories on the server. This issue is fixed in version 6.27.0.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
