Product:

Memos

(Usememos)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 60
Date Id Summary Products Score Patch Annotated
2023-01-07 CVE-2023-0107 Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. Memos 5.4
2023-01-07 CVE-2023-0108 Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. Memos 5.4
2023-01-07 CVE-2023-0110 Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. Memos 5.4
2023-01-07 CVE-2023-0111 Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. Memos 5.4
2023-01-07 CVE-2023-0112 Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. Memos 5.4
2023-09-01 CVE-2023-4696 Improper Access Control in GitHub repository usememos/memos prior to 0.13.2. Memos 9.8
2023-09-01 CVE-2023-4697 Improper Privilege Management in GitHub repository usememos/memos prior to 0.13.2. Memos 8.8
2023-09-01 CVE-2023-4698 Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. Memos 7.5
2023-09-18 CVE-2023-5036 Cross-Site Request Forgery (CSRF) in GitHub repository usememos/memos prior to 0.15.1. Memos 8.8
2024-11-15 CVE-2023-0109 A stored cross-site scripting (XSS) vulnerability was discovered in usememos/memos version 0.9.1. This vulnerability allows an attacker to upload a JavaScript file containing a malicious script and reference it in an HTML file. When the HTML file is accessed, the malicious script is executed. This can lead to the theft of sensitive information, such as login credentials, from users visiting the affected website. The issue has been fixed in version 0.10.0. Memos 5.4