https://github.com/TryGhost/Ghost.git
· scanned 2026-05-17 19:44 UTC (2 weeks, 4 days ago)
· 10 languages
1282 findings (52 legacy + 1230 scanner) 8/10 scanners ran Scanner says 61 (higher by 20)
Last scanned 2 weeks, 4 days ago · v2 · 52 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 47 of 52 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
apps/activitypub/src/views/inbox/components/inbox-list.tsx:42
path_traversallegacy
apps/admin-x-settings/src/components/settings/site/announcement-bar/announcement-bar-preview.tsx:49
xxelegacy
apps/admin-x-settings/src/components/settings/membership/member-emails/use-welcome-email-preview.ts:33
xxelegacy
apps/admin-x-design-system/src/global/form/html-editor.tsx:28
xxelegacy
ghost/core/core/frontend/services/data/fetch-data.js:50
prototype_pollutionlegacy
ghost/admin/app/components/gh-billing-iframe.js:131
error_handlinglegacy
e2e/Dockerfile.e2e:12
dockerlegacy
docker/tb-cli/Dockerfile:1
dockerlegacy
docker/ghost-dev/Dockerfile:6
dockerlegacy
docker/dev-gateway/Dockerfile:1
dockerlegacy
Dockerfile.production:28
dockerlegacy
Dockerfile.production:32
dockerlegacy
index.html
qualitylegacy
.well-known/security.txt
qualitylegacy
manifest.json
qualitylegacy
.dockerignore
dockerlegacy
docker/ghost-dev/Dockerfile:9
dockerlegacy
ghost/admin/app/components/gh-post-settings-menu/option-or-alt.js:1
qualitylegacy
apps/admin-x-settings/src/components/settings/email-design/design-fields/link-color-field.tsx:5
qualitylegacy
apps/admin-x-settings/src/components/settings/email-design/design-fields/heading-font-field.tsx:14
qualitylegacy
apps/admin-x-settings/src/components/settings/advanced/migration-tools/universal-import-modal.tsx:28
qualitylegacy
apps/admin-x-settings/src/components/settings/advanced/integrations/zapier-modal.tsx:45
qualitylegacy
apps/admin-x-settings/src/components/settings/advanced/integrations/unsplash-modal.tsx:23
qualitylegacy
apps/admin-x-settings/src/components/settings/advanced/integrations/transistor-modal.tsx:61
qualitylegacy
apps/admin-x-framework/vite.config.ts:33
qualitylegacy
apps/admin-x-framework/src/vite.ts:65
qualitylegacy
apps/admin-x-design-system/src/global/modal/preview-modal.tsx:98
qualitylegacy
apps/activitypub/src/views/profile/components/profile-page.tsx:90
qualitylegacy
apps/activitypub/src/views/profile/components/posts.tsx:27
qualitylegacy
apps/activitypub/src/views/profile/components/posts.tsx:22
qualitylegacy
apps/activitypub/src/views/profile/components/likes.tsx:25
qualitylegacy
apps/activitypub/src/views/profile/components/actor-list.tsx:34
qualitylegacy
apps/activitypub/src/views/profile/components/actor-list.tsx:32
qualitylegacy
apps/activitypub/src/views/preferences/components/edit-profile.tsx:89
qualitylegacy
apps/activitypub/src/views/notifications/notifications.tsx:187
qualitylegacy
apps/activitypub/src/views/notifications/notifications.tsx:143
qualitylegacy
apps/activitypub/src/views/inbox/components/reader.tsx:396
qualitylegacy
apps/activitypub/src/views/inbox/components/inbox-list.tsx:41
qualitylegacy
apps/activitypub/src/views/explore/explore.tsx:27
qualitylegacy
apps/activitypub/src/utils/posts.ts:18
qualitylegacy
apps/activitypub/src/components/global/ap-avatar.tsx:69
qualitylegacy
llms.txt
qualitylegacy
humans.txt
qualitylegacy
robots.txt
qualitylegacy
sitemap.xml
qualitylegacy
apps/admin/src/whats-new/hooks/use-whats-new.ts:1
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/bffeb7cd-b7a6-4529-900f-44c7ae84f8f1/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/bffeb7cd-b7a6-4529-900f-44c7ae84f8f1/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.