PT-2022-27994 · Unknown · Usememos/Memos

Published

2022-12-23

·

Updated

2024-08-21

·

CVE-2022-4685

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions usememos/memos versions prior to 0.9.0
Description The issue concerns improper access control in the usememos/memos GitHub repository. This allows unauthorized access to certain resources. No information is provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For versions prior to 0.9.0, update to version 0.9.0 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive resources within the repository until the update is applied.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-4685
GHSA-9V48-2H5X-FVPM
GO-2022-1205

Affected Products

Usememos/Memos