QID 982658
QID 982658: Nodejs (npm) Security Update for ghost (GHSA-q4h8-7qff-gh6c)
Server-side request forgery (SSRF) vulnerability in Ghost CMS < 3.10.0 allows an attacker to scan local or external network or otherwise interact with internal systems.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-q4h8-7qff-gh6c for updates pertaining to this vulnerability.
Vendor References
- GHSA-q4h8-7qff-gh6c -
github.com/advisories/GHSA-q4h8-7qff-gh6c
CVEs related to QID 982658
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-q4h8-7qff-gh6c | ghost |
|