Insufficient Granularity of Access Control in Directus - #VU144562
Published: August 21, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to improper access control in the directus_settings singleton when handling REST and GraphQL system endpoint requests. A remote user can read unrestricted settings fields to disclose sensitive information.
Exploitation requires a valid non-admin account with app access enabled. Plaintext authorization headers stored in ai_openai_compatible_headers may be exposed along with backend URLs and AI or MCP prompt content.