First published: Thu May 09 2024(Updated: )
Insertion of Sensitive Information into Log File vulnerability in Ghost Foundation Ghost.This issue affects Ghost: from n/a through 1.4.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ghost | <=1.4.0 | |
WP Ghost | <=1.4.0 |
Update to 1.5.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34559 is classified as a vulnerability that involves the insertion of sensitive information into log files.
Updating the Ghost Foundation Ghost software to version 1.4.1 or later will mitigate the vulnerability identified as CVE-2024-34559.
CVE-2024-34559 affects Ghost versions from n/a through 1.4.0.
The impact of CVE-2024-34559 includes potential exposure of sensitive information due to improper logging practices.
Yes, the WordPress Ghost plugin is affected if it is version 1.4.0 or earlier.