Blog post

Ghost CMS 4.3.2 - Cross-Origin Admin Takeover

Paul Gerste photo

Paul Gerste

Vulnerability Researcher

We recently discovered an XSS vulnerability in the admin frontend of Ghost CMS 4.3.2. Find out the details and learn how to avoid such issues in your code!