CVE-2026-105650

CVE-2026-105650 published: Ghost is a Node.js content management system. From 2.1.0 until 6.64.0, embedding a URL from an attacker-controlled website could result in untrusted scripts being stored in post content. These scripts could run in the Ghost editor, on the published site, an...

View full NVD advisory → ← Back to CVE watch