CVE-2019-13982: Medium severity directus vulnerability
Published Jul 19, 2019
·Updated
interfaces/markdown/input.vue in Directus 7 Application before 7.7.0 does not sanitize Markdown text before rendering a preview.
Affected Software
1 affected component
Rangerstudio Directus 7<7.7.0
Remediation
Event History
Jul 19, 2019
CVE Published
via MITRE·02:17 PM
Data Sourced
via MITRE·02:17 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-13982?
CVE-2019-13982 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2019-13982?
To fix CVE-2019-13982, upgrade Directus 7 Application to version 7.7.0 or later.
3
What kind of vulnerability is CVE-2019-13982?
CVE-2019-13982 is a security vulnerability related to improper sanitization of Markdown text in the Directus 7 Application.
4
What are the consequences of CVE-2019-13982?
The consequences of CVE-2019-13982 may include the injection of malicious content through untrusted Markdown input.
5
Which versions of Directus are affected by CVE-2019-13982?
Versions of Directus 7 Application prior to 7.7.0 are affected by CVE-2019-13982.