CVE-2022-26969

9.8CRITICAL

In Directus before 9.7.0, the default settings of CORS_ORIGIN and CORS_ENABLED are true.

Published: 12/26/2022Updated: 4/14/2025