Ghost Portal XSS Vulnerability (CVE-2026-24778) Advisory and Patch
Security AdvisoryCVE-2026-24778HighTryGhost
Affected:
- @tryghost/portal (npm) 2.29.1 - 2.51.4, 2.52.0 - 2.57.0
- ghost (npm) 5.43.0 - 5.120.4, 6.0.0 - 6.14.0
Fixed in:
- @tryghost/portal (npm) 2.51.5, 2.57.1
- ghost (npm) 5.121.0, 6.15.0
Referenced CVEs: CVE-2026-24778 · 8.8
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.