Insufficient Session Expiration in Ghost - #VU142544
Published: August 14, 2026
Vulnerability details
The vulnerability allows a remote user to bypass two-factor authentication and log in as another staff user.
The vulnerability exists due to insufficient session expiration in session handling when switching users. A remote user can authenticate as a staff user and then log in as another staff user using only the password to bypass two-factor authentication and log in as another staff user.
The issue affects staff user account transitions between users.