Security Advisory

CVE-2026-29053

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-05 05:51:41
Last updated 2026-03-05 15:29:27
Assigner GitHub_M
State PUBLISHED

Description

Ghost is a Node.js content management system. From version 0.7.2 to 6.19.0, specifically crafted malicious themes can execute arbitrary code on the server running Ghost. This issue has been patched in version 6.19.1.