GHSA-cg23-423q-wg36MediumCVSS 5.3

Ghost versions 5.3.0 before 6.62.0 contain a missing authorization vulnerability that allows an...

Published
October 1, 2026
Last Modified
October 1, 2026

🔗 CVE IDs covered (1)

📋 Description

Ghost versions 5.3.0 before 6.62.0 contain a missing authorization vulnerability that allows an authenticated site member to read the excerpts of posts they do not have access to (gated content).

🔗 References (4)