Description
Server-side request forgery (SSRF) vulnerability in Ghost CMS < 3.10.0 allows an attacker to scan local or external network or otherwise interact with internal systems.
Remediation
References
https://hackerone.com/reports/793704
Related Vulnerabilities
CVE-2021-23327 Vulnerability in maven package org.webjars.npm:apexcharts
CVE-2022-37260 Vulnerability in npm package steal
CVE-2019-10790 Vulnerability in npm package taffy
CVE-2022-24723 Vulnerability in npm package urijs
CVE-2023-36470 Vulnerability in maven package org.xwiki.platform:xwiki-platform-icon-default