CVE-2026-103268: Ghost 1.0.0 before 6.62.0 Suspension Bypass via Password Reset
Ghost versions before 6.62.0 contain an authentication bypass vulnerability that allows suspended staff users to reactivate their accounts through self-service password reset. Attackers with suspended staff credentials can perform password reset operations to regain active account access and restore their original privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Ghostto a version that resolves this vulnerability.Fixed in 6.62.0
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker needs credentials for a suspended Ghost staff account. The issue allows that suspended user to use the self-service password-reset process to reactivate the account and regain its original staff privileges.
Are unauthenticated external attackers affected by this vulnerability?
The provided information indicates that exploitation requires suspended staff credentials. It does not describe a way for an attacker without such credentials to bypass authentication.
Which deployments are affected?
Ghost versions from 1.0.0 through versions before 6.62.0 are affected. Ghost 6.62.0 is identified as the version where this issue is addressed.