CVE-2024-23725
21.01.2024, 04:15
Ghost before 5.76.0 allows XSS via a post excerpt in excerpt.js. An XSS payload can be rendered in post summaries.
Vendor | Product | Version |
---|---|---|
ghost | ghost | 𝑥 < 5.76.0 |
𝑥
= Vulnerable software versions
Ghost before 5.76.0 allows XSS via a post excerpt in excerpt.js. An XSS payload can be rendered in post summaries.
Vendor | Product | Version |
---|---|---|
ghost | ghost | 𝑥 < 5.76.0 |