PT-2019-13511 · Directus · Directus

Published

2019-07-19

·

Updated

2021-07-21

·

CVE-2019-13982

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Directus versions prior to 7.7.0
Description The issue concerns the rendering of Markdown text previews in the Directus 7 Application. Specifically, it does not properly sanitize Markdown text before rendering a preview, which could lead to potential security issues.
Recommendations For versions prior to 7.7.0, update to version 7.7.0 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-13982

Affected Products

Directus