70 exploited vulnerabilities in Directus
- Vendors
- Directus, Apache, Nginx, Mariadb, Unknown, Postgis
- With known exploits
- 70
- Affected Monospace Directus versions
- < 9.7.0, 11.17.0, 11.9.3, 10.13.0, 12.0.0, 11.5.0, 10.8.3, 10.13.3, 11.1.0, 11.16.1, 11.16.0, 10.6.0, 11.3.0, 10.11.2, 10.6.2, 10.12.0, 11.13.0, 11.9.0, 9.15.0, 11.14.0, 10.13.4, 11.2.2, 10.5.0, 11.1.2
- Affected Rangerstudio Directus versions
- = 6.4.9, 9.7.0, 8.8.1, 9.23.0
- Affected Rangerstudio Directus 7 Api versions
- < 2.3.0, 2.2.1
Vulnerabilities with exploits
Highest CVSS first β 3 of these already have exploit code on Sploitus
CVE-2022-26969
CVE-2018-10723
CVE-2026-35408
CVE-2025-55746
CVE-2026-39942
CVE-2022-24814
CVE-2021-26594
CVE-2019-13984
CVE-2019-13980
CVE-2019-13979
CVE-2024-39896
CVE-2026-61836
CVE-2025-30353
CVE-2024-27295
CVE-2024-45596
CVE-2026-35442
CVE-2026-35412
CVE-2023-27474
CVE-2026-61835
CVE-2026-35409
CVE-2024-39701
CVE-2026-10716
CVE-2024-54151
CVE-2024-36128
CVE-2023-45820
CVE-2021-26593
CVE-2024-39895
CVE-2024-6533
CVE-2026-39943
CVE-2026-35441
CVE-2025-64748
CVE-2025-53889 1 exploit
CVE-2022-36031
CVE-2026-35410
CVE-2026-22032
CVE-2024-54128
CVE-2023-38503
CVE-2025-64747
CVE-2025-64746
CVE-2025-27089
CVE-2024-34709
CVE-2024-28239
CVE-2022-22117
CVE-2022-22116
CVE-2026-35413
CVE-2026-26185
CVE-2025-53887 1 exploit
CVE-2025-30352 1 exploit
CVE-2025-30350
CVE-2025-30225