
Ghost CMS 5.59.1 – Arbitrary File Read
#!/usr/bin/env python3 # -*- coding: utf-8 -*- “”” # Exploit Title: Ghost CMS 5.59.1 – Arbitrary File Read # Date: 2023-09-20 # Exploit Author: ibrahimsql (https://github.com/ibrahmsql) # Vendor Homepage: https://ghost.org # Software Link: https://github.com/TryGhost/Ghost # Version: < 5.59.1 # Tested on: Ubuntu 20.04 LTS, Windows 10, macOS Big Sur # CVE: CVE-2023-40028 # Category: Web…