CyberRota Analysis
AI-GeneratedGhost, a Node.js content management system, has a vulnerability in versions 6.22.1 to 6.64.0 that allows staff users to upload files with arbitrary content types, potentially enabling the execution of malicious scripts. This could lead to the compromise of admin sessions for other staff users on the site. Organizations using affected versions of Ghost should prioritize updating to version 6.64.0 to mitigate this high-severity risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Ghost is a Node.js content management system. From 6.22.1 until 6.64.0, Ghost restricted the content type used to serve uploaded files to prevent browsers from executing them. On sites using the default local storage adapter, this restriction was not applied, so files uploaded by any staff user were served with a content type derived from their file extension. This could be used to host scripts on the site's domain, possibly resulting in compromise of other staff users' admin sessions. This issue is fixed in version 6.64.0.