Description
Server-side request forgery (SSRF) vulnerability in Ghost CMS < 3.10.0 allows an attacker to scan local or external network or otherwise interact with internal systems.
Remediation
References
https://hackerone.com/reports/793704
Related Vulnerabilities
CVE-2021-29418 Vulnerability in npm package netmask
CVE-2023-30515 Vulnerability in maven package io.jenkins.plugins:thycotic-devops-secrets-vault
CVE-2017-16139 Vulnerability in npm package jikes
CVE-2020-28500 Vulnerability in maven package org.webjars:lodash
CVE-2022-36097 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-ui