Title |
Severity |
Exploit |
Date |
Affected Version |
CVE-2025-27089
|
Medium
|
|
Feb 19, 2025
|
>= 11.0.0 < 11.1.2
|
Directus has a DOM-Based cross-site scripting (XSS) via layout_options
|
Low
|
|
Jan 23, 2025
|
< 11.3.3
|
CVE-2025-24353
|
Medium
|
|
Jan 23, 2025
|
< 11.2.0
|
Directus has an insecure object reference via PATH presets
|
Medium
|
|
Aug 27, 2024
|
< 10.13.2
|
CVE-2024-6534
|
Low
|
|
Aug 15, 2024
|
<= 10.13.0
|
CVE-2024-6533
|
Medium
|
|
Aug 15, 2024
|
<= 10.13.0
|
CVE-2024-39896
|
Medium
|
|
Jul 8, 2024
|
>= 9.11 < 10.13.0
|
CVE-2024-39701
|
Medium
|
|
Jul 8, 2024
|
>= 9.23.0 < 10.6.0
|
CVE-2024-36128
|
High
|
|
Jun 3, 2024
|
< 10.11.2
|
CVE-2024-34709
|
Medium
|
|
May 14, 2024
|
>= 10.10.0 < 10.11.0
|