Direct Vulnerabilities

Known vulnerabilities in the ghost package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Improper Verification of Cryptographic Signature

<6.64.0-r0
  • L
GHSA-prgh-xp8r-p3m5

<6.67.0-r0
  • M
Cross-site Scripting (XSS)

<6.67.0-r0
  • L
GHSA-2x7j-588g-ccc2

<6.67.0-r0
  • M
CVE-2026-16729

<6.67.0-r0
  • L
Cross-site Scripting (XSS)

<6.67.0-r0
  • L
Resource Exhaustion

<6.67.0-r0
  • L
Inefficient Regular Expression Complexity

<6.67.0-r0
  • L
HTTP Request Smuggling

<6.67.0-r0
  • L
GHSA-5p4m-2wfm-xmqj

<6.67.0-r0
  • L
CVE-2026-82562

<6.67.0-r0
  • L
Resource Exhaustion

<6.67.0-r0
  • L
HTTP Request Smuggling

<6.67.0-r0
  • L
Directory Traversal

<6.67.0-r0
  • L
CVE-2026-84292

<6.67.0-r0
  • L
Overly Permissive Cross-domain Whitelist

<6.67.0-r0
  • L
Resource Exhaustion

<6.67.0-r0
  • H
CVE-2026-84933

<6.67.0-r0
  • L
GHSA-v53p-9fqp-m79j

<6.67.0-r0
  • L
CVE-2026-85152

<6.67.0-r0
  • L
CVE-2026-18446

<6.67.0-r0
  • L
Resource Exhaustion

<6.67.0-r0
  • L
GHSA-cc9r-2j5m-2m83

<6.67.0-r0
  • L
Improper Encoding or Escaping of Output

<6.67.0-r0
  • L
CVE-2026-82333

<6.67.0-r0
  • L
Use of Less Trusted Source

<6.67.0-r0
  • C
CVE-2026-84961

<6.67.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<6.67.0-r0
  • L
GHSA-6vj9-mwq6-2f5v

<6.67.0-r0
  • L
CVE-2026-75899

<6.67.0-r0
  • L
CVE-2026-18540

<6.67.0-r0
  • L
CVE-2026-88932

<6.67.0-r0
  • M
HTTP Response Splitting

<6.67.0-r0
  • C
CVE-2026-13697

<6.67.0-r0
  • L
CVE-2026-75975

<6.67.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<6.67.0-r0
  • L
Incorrect Regular Expression

<6.67.0-r0
  • H
External Control of File Name or Path

<6.67.0-r0
  • L
CVE-2026-84890

<6.67.0-r0
  • M
Improper Authorization

<6.67.0-r0
  • L
GHSA-8m3c-c648-2xjj

<6.67.0-r0
  • H
CVE-2026-85014

<6.67.0-r0
  • L
GHSA-8vvx-rff5-p5rq

<6.67.0-r0
  • M
CVE-2026-15157

<6.67.0-r0
  • L
Incorrect Type Conversion or Cast

<6.67.0-r0
  • L
GHSA-wmmp-3585-3rmp

<6.67.0-r0
  • L
CVE-2026-86472

<6.67.0-r0
  • L
GHSA-rgj7-g3m4-5g8c

<6.67.0-r0
  • L
CVE-2026-82417

<6.67.0-r0
  • L
Exposure of Data Element to Wrong Session

<6.67.0-r0
  • L
CVE-2026-18149

<6.67.0-r0
  • L
CVE-2026-77078

<6.67.0-r0
  • L
CVE-2026-85024

<6.67.0-r0
  • L
CVE-2026-76172

<6.67.0-r0
  • L
CVE-2026-16221

<6.67.0-r0
  • M
CVE-2026-84947

<6.67.0-r0
  • L
CVE-2026-77037

<6.67.0-r0
  • L
CVE-2026-19534

<6.67.0-r0
  • L
CVE-2026-77063

<6.67.0-r0
  • H
CVE-2026-14643

<6.67.0-r0
  • L
Insufficient Verification of Data Authenticity

<6.67.0-r0
  • M
CVE-2026-16728

<6.67.0-r0
  • L
Resource Exhaustion

<6.65.0-r0
  • L
GHSA-g57g-f23g-4646

<6.67.0-r0
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<6.67.0-r0
  • L
Directory Traversal

<6.67.0-r0
  • H
Inefficient Regular Expression Complexity

<6.67.0-r0
  • L
Race Condition

<6.67.0-r0
  • L
Information Exposure

<6.67.0-r0
  • L
CVE-2026-13676

<6.67.0-r0
  • L
Insufficient Comparison

<6.65.0-r0
  • L
Uncaught Exception

<6.67.0-r0
  • L
Algorithmic Complexity

<6.67.0-r0
  • L
CVE-2026-14257

<6.67.0-r0
  • L
Use of Less Trusted Source

<6.67.0-r0
  • M
CVE-2026-85008

<6.67.0-r0
  • L
CVE-2026-13149

<6.67.0-r0
  • L
Insufficient Comparison

<6.58.0-r0
  • L
Server-Side Request Forgery (SSRF)

<6.58.0-r0
  • L
GHSA-rgwj-5xj2-c3m3

<6.65.0-r0
  • H
Out-of-bounds Write

<6.64.0-r0
  • L
Cross-site Scripting (XSS)

<6.64.0-r0
  • L
Cross-site Scripting (XSS)

<6.64.0-r0
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

<6.64.0-r0
  • L
CVE-2025-12758

<6.62.0-r0
  • L
CVE-2025-56200

<6.62.0-r0
  • H
Inefficient Regular Expression Complexity

<6.62.0-r0
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<6.58.0-r0
  • L
Directory Traversal

<6.58.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<6.58.0-r0
  • L
GHSA-55q2-fjhq-7xh7

<6.58.0-r0
  • L
Reachable Assertion

<6.58.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<6.58.0-r0
  • L
Improper Input Validation

<6.58.0-r0
  • L
Improper Input Validation

<6.58.0-r0
  • L
Improper Input Validation

<6.58.0-r0
  • M
Directory Traversal

<6.58.0-r0
  • L
Out-of-bounds Read

<6.58.0-r0
  • L
CVE-2026-12590

<6.58.0-r0
  • L
Out-of-bounds Read

<6.58.0-r0
  • L
GHSA-c2j3-45gr-mqc4

<6.58.0-r0
  • H
Insufficient Comparison

<6.58.0-r0
  • L
Allocation of Resources Without Limits or Throttling

<6.67.0-r0