CVE-2024-34448: Ghost
High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.
Ghost before 5.82.0 allows CSV Injection during a member CSV export.
Affected products
- Ghost Ghost: before 5.82.0 (fixed in 5.82.0)
Published 2024-05-22. Last modified 2026-06-17.