CVE-2024-34448: Ghost

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Ghost before 5.82.0 allows CSV Injection during a member CSV export.

Affected products

  • Ghost Ghost: before 5.82.0 (fixed in 5.82.0)

Published 2024-05-22. Last modified 2026-06-17.