Vulnerabilities > Rangerstudio > Directus > 9.4.3

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2023-27474 Cross-site Scripting vulnerability in Rangerstudio Directus
Directus is a real-time API and App dashboard for managing SQL database content.
network
low complexity
rangerstudio CWE-79
5.4
2022-06-22 CVE-2022-23080 Server-Side Request Forgery (SSRF) vulnerability in Rangerstudio Directus
In directus versions v9.0.0-beta.2 through 9.6.0 are vulnerable to server-side request forgery (SSRF) in the media upload functionality which allows a low privileged user to perform internal network port scans.
network
low complexity
rangerstudio CWE-918
5.0
2022-04-04 CVE-2022-24814 Cross-site Scripting vulnerability in Rangerstudio Directus
Directus is a real-time API and App dashboard for managing SQL database content.
4.3