Browse Security Advisories
Security Advisories for @directus/app in npm Clear Filters
Moderate
6 months ago
Directus allows privilege escalation using Share feature
npm
@directus/app, directus
Filter by Severity
Filter by Ecosystem
maven
6,666
packagist
5,357
pypi
4,846
npm
4,195
go
2,803
nuget
1,702
cargo
1,067
rubygems
919
hex
37
swift
35
actions
32
pub
10
Filter by Package
directus
38
parse-server
33
electron
28
next
26
@openzeppelin/contracts-upgradeable
22
@openzeppelin/contracts
21
sequelize
16
tinymce
16
ghost
15
undici
15
flowise
15
ckeditor4
15
angular
14
swagger-ui
14
joplin
14
vite
13
strapi
13
nodebb
13
vm2
12
marked
12
bootstrap
11
tinymce/tinymce
11
TinyMCE
11
matrix-js-sdk
11
handlebars
11
nocodb
11
uptime-kuma
10
bootstrap
9
@strapi/strapi
9
systeminformation
9
next-auth
9
matrix-appservice-irc
9
org.webjars:bootstrap
9
@evershop/evershop
9
twbs/bootstrap
9
bootstrap
9
serve
9
matrix-react-sdk
9
shescape
8
editor.md
8
org.webjars.npm:jquery
8
@haxtheweb/haxcms-nodejs
8
express-cart
8
tar
8
npm
8
elliptic
8
jsrsasign
8
url-parse
8
validator
8
steal
8
jquery-rails
8
dompurify
8
urijs
8
jquery
8
node-forge
8
jquery-ui-rails
7
jQuery.UI.Combined
7
total.js
7
jquery-ui
7
bootstrap-sass
7
hapi
7
snyk-broker
7
bootstrap-sass
7
jQuery
7
hermes-engine
7
sanitize-html
7
@directus/api
7
vega
7
n8n
7
org.webjars.npm:jquery-ui
7
bootstrap.sass
7
mongoose
7
lodash
7
@sveltejs/kit
6
parse-url
6
aaptjs
6
rsshub
6
safe-eval
6
@strapi/plugin-users-permissions
6
tarteaucitronjs
6
openpgp
6
axios
6
prismjs
6
mattermost-desktop
6
katex
5
@lobehub/chat
5
mysql2
5
@saltcorn/server
5
total4
5
dojo
5
keystone
5
yarn
5
generator-jhipster
5
ws
5
passport-wsfed-saml2
5
@keystone-6/core
5
vditor
5
sweetalert2
5
public
5
express
5
ejs
5
mermaid
5
xlsx
5
fastify
5
lodash-es
5
rendertron
5
aws-cdk-lib
5
better-auth
5
trix
5
froala-editor
5
ua-parser-js
5
simple-markdown
4
pnpm
4
@node-saml/node-saml
4
@auth0/nextjs-auth0
4
xml-crypto
4
multer
4
remarkable
4
hono
4
snyk
4
fast-xml-parser
4
convert-svg-core
4
@backstage/plugin-scaffolder-backend
4
engine.io
4
apostrophe
4
software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk
4
realms-shim
4
vue-i18n
4
follow-redirects
4
yui
4
valine
4
@apollo/gateway
4
jspdf
4
vega-functions
4
petite-vue-i18n
4
qs
4
muhammara
4
jsonwebtoken
4
ses
4
simple-git
4
apollo-server-core
4
auth0-lock
4
ecstatic
4
jquery-validation
4
hummus
4
nuxt
4
erxes
4
@finos/git-proxy
4
safer-eval
4
auth0-js
4
mongo-express
4
meshcentral
4
materialize-css
4
mongosh
4
moment
4
code-server
4
@intlify/vue-i18n-core
4
aws-iot-device-sdk-v2
4
glance
4
awsiotsdk
4
node-jose
3
node-fetch
3
tar-fs
3
docsify
3
node-saml
3
jose-node-cjs-runtime
3
mysql
3
object-path
3
@janhq/core
3
mxgraph
3
snowflake-sdk
3
json-ptr
3
@cubejs-backend/api-gateway
3
bson
3
@soketi/soketi
3
nodemailer
3
open-webui
3
yapi-vendor
3
node-ipc
3
keycloak-connect
3
ids-enterprise
3
layui
3
sails
3
parsel
3
simplehttpserver
3
@hapi/subtext
3
@intlify/core
3
@intlify/core-base
3
apollo-server
3
@ckeditor/ckeditor5-markdown-gfm
3
@apollo/server
3
express-fileupload
3
socket.io-file
3
statics-server
3
feathers-sequelize
3
locutus
3
@strapi/plugin-content-manager
3
serialize-to-js
3
send
3
@materializecss/materialize
3