CVE-2026-103283 - Ghost 6.20.0 before 6.57.1 Authentication Bypass via Session Handling
CVE ID :CVE-2026-103283 Published : Oct. 1, 2026, 10:42 a.m. | 35 minutes ago Description :Ghost versions 6.20.0 before 6.57.1 contain a session handling vulnerability that allows authenticated staff users to log in as any other staff user with only the password, bypassing two-factor...