Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
References
Link | Resource |
---|---|
https://github.com/usememos/memos/commit/3556ae4e651d9443dc3bb8a170dd3cc726517a53 | Patch Third Party Advisory |
https://huntr.dev/bounties/2c7101bc-e6d8-4cd0-9003-bc8d86f4e4be | Exploit Patch Third Party Advisory |
Configurations
Information
Published : 2022-12-28 06:15
Updated : 2023-03-01 18:15
NVD link : CVE-2022-4806
Mitre link : CVE-2022-4806
JSON object : View
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
Products Affected
usememos
- memos