Directus is a real-time API and App... CVE-2023-28443

- AV AC AU C I A
发布: 2023-03-24
修订: 2023-03-29

Directus is a real-time API and App dashboard for managing SQL database content. Prior to version 9.23.3, the `directus_refresh_token` is not redacted properly from the log outputs and can be used to impersonate users without their permission. This issue is patched in version 9.23.3.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息