Vulnerability Database

With exploit

rangerstudio / directus

Title Severity Exploit Date Affected Version
CVE-2023-27474 Medium Mar 6, 2023 < 9.23.0
CVE-2022-24814 Medium Apr 4, 2022 < 9.7.0

monospace / directus

Title Severity Exploit Date Affected Version
CVE-2024-47822 Medium Apr 14, 2025 < 10.13.2
CVE-2024-39896 Medium Jul 8, 2024 < 10.13.0
CVE-2024-39895 Medium Jul 8, 2024 < 10.12.0
CVE-2024-39699 Medium Jul 8, 2024 < 10.9.3
CVE-2024-36128 High Jun 3, 2024 < 10.11.2
CVE-2024-34708 Low May 14, 2024 < 10.11.0
CVE-2024-34709 Medium May 14, 2024 < 10.11.0
CVE-2024-28238 Low Mar 12, 2024 < 10.10.0
CVE-2024-28239 Low Mar 12, 2024 < 10.10.0
CVE-2024-27295 High Mar 1, 2024 < 10.8.3

Node.js icon directus

Title Severity Exploit Date Affected Version
CVE-2025-53889 Medium Jul 15, 2025 < 11.9.0
CVE-2025-53887 Medium Jul 15, 2025 < 11.9.0
CVE-2025-53886 Medium Jul 15, 2025 < 11.9.0
Directus has a DOM-Based cross-site scripting (XSS) via layout_options Low Jan 23, 2025 < 11.3.3
CVE-2025-24353 Medium Jan 23, 2025 < 11.2.0
Directus has an insecure object reference via PATH presets Medium Aug 27, 2024 < 10.13.2
CVE-2024-6534 Low Aug 15, 2024 <= 10.13.0
CVE-2024-6533 Medium Aug 15, 2024 <= 10.13.0
CVE-2024-36128 High Jun 3, 2024 < 10.11.2
CVE-2024-34708 Low May 14, 2024 < 10.11.0