← Terug naar overzicht

Ghostwriter versions before 7.1.2 contain a vulnerability in the report template swap endpoint that fails to validate template ownership. This allows authenticated attackers to attach client-scoped templates belonging to other clients to their own reports. By exploiting sequential template primary keys, attackers can enumerate and attach foreign templates. Once attached, attackers can generate reports to extract sensitive template contents including letterhead, boilerplate text, and methodology documentation. This constitutes a cross-client information disclosure vulnerability affecting multi-tenant deployments of Ghostwriter. The issue has been patched in version 7.1.2 with a fix available in the referenced commit.

Affected products

  • Ghostwriter

Related CVE's

  • CVE-2026-78203

Categories

  • Data Breach & Exfiltration
  • Identity & Access
  • Security Tools
  • Web Technologies