CVE-2022-4686

CRITICAL9.8EPSS 0.14%

usememos/memos Authorization Bypass Through User-Controlled Key vulnerability

Published: 12/23/2022Modified: 8/21/2024
Also known as:GHSA-68gw-r2x5-7r5rGO-2022-1215

Description

Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.0.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References (5)