Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-103284

2 дня назад

Ghost versions from 5.125.1 before 6.57.1 contain an information disclosure vulnerability in the Admin Feedback endpoint that allows unauthorized staff users to access member data. Attackers with staff privileges can query the feedback endpoint to retrieve sensitive member information without proper authorization checks.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2026-103284

2 дня назад

Ghost versions from 5.125.1 before 6.57.1 contain an information discl ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-wm9p-jg8j-w38q

2 дня назад

Ghost versions from 5.125.1 before 6.57.1 contain an information disclosure vulnerability in the Admin Feedback endpoint that allows unauthorized staff users to access member data. Attackers with staff privileges can query the feedback endpoint to retrieve sensitive member information without proper authorization checks.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-103284

Ghost versions from 5.125.1 before 6.57.1 contain an information disclosure vulnerability in the Admin Feedback endpoint that allows unauthorized staff users to access member data. Attackers with staff privileges can query the feedback endpoint to retrieve sensitive member information without proper authorization checks.

CVSS3: 4.3
0%
Низкий
2 дня назад
debian логотип
CVE-2026-103284

Ghost versions from 5.125.1 before 6.57.1 contain an information discl ...

CVSS3: 4.3
0%
Низкий
2 дня назад
github логотип
GHSA-wm9p-jg8j-w38q

Ghost versions from 5.125.1 before 6.57.1 contain an information disclosure vulnerability in the Admin Feedback endpoint that allows unauthorized staff users to access member data. Attackers with staff privileges can query the feedback endpoint to retrieve sensitive member information without proper authorization checks.

CVSS3: 4.3
0%
Низкий
2 дня назад

Уязвимостей на страницу