{"id":"BIT-ghost-2024-34559","details":"Insertion of Sensitive Information into Log File vulnerability in Ghost Foundation Ghost.This issue affects Ghost: from n/a through 1.4.0.","aliases":["CVE-2024-34559"],"modified":"2024-05-24T12:12:47.557248Z","published":"2024-05-24T07:18:11.452Z","database_specific":{"cpes":["cpe:2.3:a:ghost:ghost:*:*:*:*:*:node.js:*:*","cpe:2.3:a:ghost:ghost:*:*:*:*:*:wordpress:*:*"],"severity":"High"},"references":[{"type":"WEB","url":"https://patchstack.com/database/vulnerability/ghost/wordpress-ghost-plugin-1-4-0-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve"}],"affected":[{"package":{"name":"ghost","ecosystem":"Bitnami","purl":"pkg:bitnami/ghost"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.5.0"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/ghost/BIT-ghost-2024-34559.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}],"schema_version":"1.7.3"}